Herbaria
bd_070542b3db7c7c41 · schema v1 · pii pii-v1
Full breach record for Herbaria →2 incidents on fileHerbaria, an all-natural soap company, notified the New Hampshire Attorney General that its payment processing system was compromised between May 1 and May 16, 2014. The breach, attributed to the website host's systems, exposed customer names, billing addresses, and credit/debit card details (including CVV) for approximately two NH residents. Herbaria engaged forensic investigators, changed hosts, and planned to mail notifications on June 10, 2014.
J jump to incidentP pin to compareR raw source
Incident timeline
May 1, 2014
Begins
May 16, 2014
Discovered
Jun 6, 2014
Filed
vs. sector median
5 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Massachusetts State AGbd_08d11112b08478ec2014-06-09 · +3dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.