Blundstone (U.S.A.) Inc.
bd_2676fe0caf8e9561 · schema v1 · pii pii-v1
Full breach record for Blundstone (U.S.A.) Inc. →2 incidents on fileBlundstone (U.S.A.) Inc. notified the NH AG of a security incident affecting 44 NH residents. An unauthorized third party exploited a vulnerability in the Adobe Commerce platform between July 7 and August 14, 2024, to install malicious code that duplicated the checkout page and collected contact and payment information. Blundstone discovered the incident on August 15, 2024, engaged forensic investigators and legal counsel, removed the malicious code, and applied security patches.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 7, 2024
Begins
Aug 15, 2024
Discovered
Sep 13, 2024
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Montana State AGbd_4d7eaaf90dd137d92024-09-14 · +1dCandidate
- Indiana State AGbd_f45176f5ded33fe92024-09-14 · +1dVerified
- Massachusetts State AGbd_40bb3d986f417e812024-09-20 · +7dVerified
- California State AGbd_714ab241355383f22024-09-20 · +7dVerified
Show 2 more filings ↓Show fewer ↑up to 7d gap
- Maine State AGbd_7a9af778c88c72152024-09-20 · +7dVerified
- Vermont State AGbd_d52977427ecd93442024-09-20 · +7dVerified
Filing propagation · 7 filings · 7 states
View merged incident ↗Pattern: first filing Sep 13 (NH), last Sep 20 (VT) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.