DisclosureLens
HackingRetail & ConsumerRetailStolen CredentialsCustomer Data InvolvedIdentity (basic)Government IDCredentialsMediumContained

COPART, INC.

bd_00907b575db7501d · schema v1 · pii pii-v1

Severity

Medium

Discovered

Mar 31, 2015

Filed

May 27, 2015

To disclose

8 weeks

Affected

231state residents only

Linked

4 filings

Confidence

67%
Full breach record for COPART, INC.

Copart, Inc. notified the New Hampshire Attorney General on May 27, 2015, of a cybersecurity incident discovered on March 31, 2015. An unauthorized person accessed the network, potentially compromising member names, addresses, driver's license numbers, phone numbers, emails, and Copart.com usernames/passwords. 231 NH residents were notified. Copart engaged a cybersecurity firm, mandated password resets, and implemented enhanced security measures.

Incident timeline

discovery → filing · 8 weeks / 57 days

Mar 31, 2015

Discovered

May 27, 2015

Filed

vs. sector median

+1 wks slower

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Massachusetts State AGMay 27 · first
California State AGMay 27 · first
New Hampshire State AGMay 27 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.