HackingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedPCIFINANCIAL_ACCOUNTLowContained
Whitley's Peanut Factory
bd_2eec028f77744474 · schema v1 · pii pii-v1
Full breach record for Whitley's Peanut Factory →Whitley’s Peanut Factory notified the NH Attorney General of a third-party vendor (CommerceV3) breach. Unauthorized access to CommerceV3 systems occurred between Nov 24, 2021 and Dec 14, 2022. CommerceV3 discovered potential access to cardholder data on May 3, 2023. 183 NH residents affected. Notification mailed July 10, 2023.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_f90e1a5ff2912f0fMontana State AGfiled 2023-07-10Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/whitleys-peanut-factory-20230710.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 10, 2023
- Raw hash
- 471166b323857d3a24086ff725d85da8f987d759117638110cdb29b1c3470d1d
Reporting entity
- Name
- Whitley's Peanut Factorynorm: whitley s peanut factory
Victim entity
- Name
- Whitley's Peanut Factorynorm: whitley s peanut factory
Incident
- Discovered
- May 3, 2023
- Materiality determined
- —
- Notification sent
- Jul 10, 2023
- Affected individuals
- 183
- Data types
- PCIFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Attorney General John Formella
- Third party
- via CommerceV3
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 10 weeks(68 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.