HP Restaurant Group
bd_268f5e990ccc9294 · schema v1 · pii pii-v1
Full breach record for HP Restaurant Group →HP Restaurant Group notified NH AG of unauthorized access to its e-commerce gift card website since 2011. Suspicious activity detected April 5, 2019. Forensic investigation confirmed potential exposure of customer names, addresses, credit/debit card numbers, CVVs, and account credentials. 42 NH residents notified on May 24, 2019. Website shut down; processing moved to new environment.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 1, 2011
Begins
Apr 5, 2019
Discovered
May 29, 2019
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Montana State AGbd_2676155cd0254f562019-05-24 · +5dCandidate
- Massachusetts State AGbd_afaf9241dad8c7112019-05-24 · +5dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing May 24 (MT), last May 29 (NH) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.