Boomerang Tags
bd_234575a45e7d57fc · schema v1 · pii pii-v1
Full breach record for Boomerang Tags →Boomerang Tags notified the NH AG of a security incident where malware installed on its hosting server compromised payment card data (names, addresses, card numbers, CVVs) for approximately 219 NH residents. The compromise occurred between July 4, 2013, and February 18, 2014. The company engaged forensic investigators and replaced its payment processor.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 4, 2013
Begins
Apr 25, 2014
Filed
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- California State AGbd_4a97e4e34dc645542014-04-30 · +5dCandidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Apr 25 (NH), last Apr 30 (CA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.