Rev-A-Shelf
bd_28530ef517996e8f · schema v1 · pii pii-v1
Full breach record for Rev-A-Shelf →Rev-A-Shelf LLC notified Vermont consumers of a data breach involving unauthorized code injection on its website. The malicious code, active from July 12, 2022, to November 28, 2022, attempted to capture customer payment card details (number, expiration, CVV) during checkout. Rev-A-Shelf discovered the injection on November 28, 2022, removed it, and suspended sales. Notifications were sent on January 27, 2023, offering guidance on protecting personal information.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 12, 2022
Begins
Nov 28, 2022
Discovered
Jan 27, 2023
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Montana State AGbd_445fd966336f5a6e2023-01-27Verified
- Maine State AGbd_8095c9175ac256f72023-01-27Verified
- New Hampshire State AGbd_815c815df04227752023-01-27Verified
- Massachusetts State AGbd_87beae61ac8ee1852023-01-27Verified
Show 1 more filing ↓Show fewer ↑
- Indiana State AGbd_c27cc4774b5778c32023-01-27Verified
Filing propagation · 6 filings · 6 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.