Jofit
bd_0b9c86242d3026dd · schema v1 · pii pii-v1
Full breach record for Jofit →2 incidents on fileJoFit, a clothing and accessories company, notified the NH Attorney General in February 2017 that its website was targeted by a cybersecurity attack in mid-January 2017. The attack exploited a vulnerability in the website, potentially exposing customer names and credit card information. Approximately 38 New Hampshire residents were likely affected. JoFit engaged forensic consultants and notified law enforcement, offering one year of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 15, 2017
Discovered
Feb 22, 2017
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- California State AGbd_bf4943e430adc89c2017-02-22Candidate
- Montana State AGbd_a5f19ba9a4ddaaf72017-02-24 · +2dVerified
- South Carolina State AGbd_7e07236de8a43c272017-02-27 · +5dVerified
- Massachusetts State AGbd_a1ceb2bc965190e32017-02-27 · +5dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Feb 22 (CA), last Feb 27 (MA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.