KandyPens, Inc.
bd_25e5d4335dc9bc38 · schema v1 · pii pii-v1
Full breach record for KandyPens, Inc. →2 incidents on fileKandyPens, Inc. experienced a data security incident where an unauthorized user gained access to its online payment platform between March 7, 2019, and February 13, 2020. The company became aware of suspicious activity in January 2020. Compromised data may include names, credit/debit card numbers, expiration dates, and security codes. The vulnerability was fixed, and monitoring was increased.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 7, 2019
Begins
Jan 1, 2020
Discovered
Apr 20, 2020
Filed
vs. sector median
+8 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Indiana State AGbd_59330e0f544dec582020-04-20Verified
- Oregon State AGbd_979fa051fb8fb42e2020-04-20Candidate
- Montana State AGbd_bf8f69e6defa73e22020-04-20Verified by operator
- New Hampshire State AGbd_fc3c743049d165742020-04-21 · +1dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.