Kroto Inc.
bd_1bdcefe3a51e00a7 · schema v1 · pii pii-v1
Full breach record for Kroto Inc. →Kroto Inc. d/b/a iCanvas disclosed a data breach where an unauthorized script was placed on its checkout page, potentially capturing customer PII and payment card details. The incident was discovered on May 28, 2020, with access likely occurring around May 10, 2020. The company removed the script, notified law enforcement, and offered one year of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 10, 2020
Begins
May 28, 2020
Discovered
Jun 24, 2020
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- California State AGbd_03ef69d0619593622020-06-24Candidate
- New Hampshire State AGbd_096ea39264f90c462020-06-24Verified
- Massachusetts State AGbd_7c73eeb54b56796d2020-06-24Verified
- Indiana State AGbd_640d32173e9d37452020-06-26 · +2dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.