DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitCapture Stored DataData ExfiltratedCustomer Data InvolvedPIIFinancial accountLowContained

MT. HOOD MEADOWS OREG., LLC

bd_3168f30fd40a7909 · schema v1 · pii pii-v1

Severity

Low

Discovered

Mar 9, 2023

Filed

Nov 9, 2023

To disclose

35 weeks

Affected

15state residents only

Linked

6 filings

Confidence

66%
Full breach record for MT. HOOD MEADOWS OREG., LLC2 incidents on file

Mt. Hood Meadows Oreg LLC notified the NH AG of a cybersecurity incident discovered March 9, 2023. Unauthorized access via web server code modification occurred Feb 21–Mar 14, 2023, potentially compromising credit card info for 15 NH residents. Notifications mailed Oct 27, 2023, including 1-year Kroll monitoring.

Incident timeline

undetected · 16 days
discovery → filing · 35 weeks / 245 days

Feb 21, 2023

Begins

Mar 9, 2023

Discovered

Nov 9, 2023

Filed

vs. sector median

+28 wks slower

This filing is one of 6 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (5) · sorted by filing gap

Show 1 more filingup to 13d gap

Filing propagation · 6 filings · 6 states

View merged incident ↗
Vermont State AGOct 27 · first
Indiana State AGOct 27 · first
New Hampshire State AG+13d · this page

Pattern: first filing Oct 27 (VT), last Nov 9 (NH) — a 13-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.