DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitCustomer Data InvolvedIdentity (basic)Financial accountFinancial credentialsLowContained

American Outdoor Brands Corporation

bd_3449964744ddf8f0 · schema v1 · pii pii-v1

Severity

Low

Discovered

Dec 16, 2019

Filed

Jan 10, 2020

To disclose

25 days

Affected

4state residents only

Linked

4 filings

Confidence

66%
Full breach record for American Outdoor Brands Corporation

American Outdoor Brands Corporation notified the NH AG of a security incident affecting 4 NH residents. Unauthorized code was present on store.smith-wesson.com between Nov 27 and Dec 3, 2019, copying payment card data. AOBC removed the code, engaged forensic investigators, and offered 1 year of Experian identity protection.

Incident timeline

undetected · 19 days
discovery → filing · 25 days

Nov 27, 2019

Begins

Dec 16, 2019

Discovered

Jan 10, 2020

Filed

vs. sector median

5 wks faster

This filing is one of 4 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Montana State AGJan 9 · first
Indiana State AGJan 9 · first
New Hampshire State AG+1d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.