DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitCustomer Data InvolvedDelayed DiscoveryIdentity (basic)Financial accountFinancial credentialsLowContained

Pacific Press Publishing Association

bd_351057385196a800 · schema v1 · pii pii-v1

Severity

Low

Discovered

Oct 1, 2019

Filed

May 3, 2020

To disclose

31 weeks

Affected

Not disclosed

Linked

5 filings

Confidence

64%
Full breach record for Pacific Press Publishing Association

Pacific Press Publishing Association disclosed that unauthorized code was discovered on its adventistbookcenter.com website in late October 2019, potentially present since June 2019. The code may have captured customer data including names, addresses, email, credit card numbers, and security codes. The company implemented additional security measures and offered one year of identity monitoring.

California clockDiscovered Oct 1, 2019Notified Apr 24, 2020206d CA 60-day late31 weeks discovery → filing

Incident timeline

undetected · 122 days
discovery → filing · 31 weeks / 215 days

Jun 1, 2019

Begins

Oct 1, 2019

Discovered

May 3, 2020

Filed

vs. sector median

+23 wks slower

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 5 states

View merged incident ↗
Indiana State AGApr 27 · first
California State AG+6d · this page

Pattern: first filing Apr 27 (IN), last Jun 9 (MT) — a 43-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.