Kroto Inc.
bd_03ef69d061959362 · schema v1 · pii pii-v1
Full breach record for Kroto Inc. →Kroto Inc. d/b/a iCanvas discovered on May 28, 2020, that an unauthorized script was placed on its website checkout page, likely starting May 10, 2020. The script captured customer information including names, addresses, and payment card details (number, security code, expiration) submitted during transactions. The company removed the script, notified law enforcement, and offered one year of credit monitoring to affected customers.
J jump to incidentP pin to compareR raw source
Incident timeline
May 10, 2020
Begins
May 28, 2020
Discovered
Jun 24, 2020
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- New Hampshire State AGbd_096ea39264f90c462020-06-24Verified
- Montana State AGbd_1bdcefe3a51e00a72020-06-24Verified
- Massachusetts State AGbd_7c73eeb54b56796d2020-06-24Verified
- Indiana State AGbd_640d32173e9d37452020-06-26 · +2dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.