DisclosureLens
MalwareTechnologyInformationRansomwareData ExfiltratedCustomer Data InvolvedIdentity (basic)Financial accountFinancial credentialsLowActive

Datapak Services

bd_32d8425b7a2ea35b · schema v1 · pii pii-v1

Severity

Low

Discovered

Aug 13, 2013

Filed

Nov 6, 2013

To disclose

12 weeks

Affected

169state residents only

Linked

4 filings

Confidence

66%
Full breach record for Datapak Services2 incidents on file

Datapak Services Corporation filed a supplemental notice with the New Hampshire AG regarding a data security event. Malware placed on systems around March 5, 2013, may have compromised personal information of 169 NH residents. Data accessed included names, addresses, credit card numbers, expiration dates, and CVV2s. Datapak retained forensic experts, legal counsel, and cooperated with the Secret Service. Affected individuals were offered one year of identity monitoring.

Incident timeline

undetected · 161 days
discovery → filing · 12 weeks / 85 days

Mar 5, 2013

Begins

Aug 13, 2013

Discovered

Nov 6, 2013

Filed

vs. sector median

7 wks faster

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 3 states

View merged incident ↗
New Hampshire State AG+35d · this page

Pattern: first filing Oct 2 (NH), last Nov 8 (CA) — a 37-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.