Rodl Management breach exposed tax client data from Jamestown and JT Tax Services

Organization
Rodl Management, Inc.
Exploit
Hacking
Industry
Professional Services

Rodl Management, Inc., the United States arm of the German professional services network Rodl and Partner, notified individuals in August 2024 that their personal information had been exposed in a network intrusion earlier that year. The Atlanta based firm provides accounting, audit and tax advisory services.

According to the notifications, a managed service provider flagged suspicious activity on the firm's network on February 9, 2024. A forensic investigation determined that an unauthorized party had access to the environment between January 30 and February 9, 2024, and had reached files containing personal data.

The people affected were clients of two Rodl customers, Jamestown, L.P. and its affiliate JT Tax Services L.P., which used the firm's systems to store tax documents and file returns. Reporting on the notifications described the exposed data as primarily names and Social Security numbers, with some accounts also listing addresses, driver's license and government identification numbers, and financial information. Rodl did not disclose how many people were affected.

Rodl said it secured its systems, engaged outside cybersecurity specialists and reported the matter to federal law enforcement. It informed the two client firms on July 15, 2024, and began mailing notification letters to individuals on August 12, 2024. A further round of letters followed in April 2025, after which several law firms announced class action investigations.

Sources