HackingCustomer Data InvolvedDelayed DiscoveryIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Slim Chickens
bd_383cec170515bd04 · schema v1 · pii pii-v1
Full breach record for Slim Chickens →Slim CD, Inc., a payment processing gateway, experienced unauthorized system access between August 17, 2023, and June 15, 2024. The company became aware of suspicious activity on June 15, 2024. The incident potentially exposed names, addresses, credit card numbers, and expiration dates for cardholders who used merchants serviced by Slim CD. The company engaged third-party investigators, notified law enforcement, and is offering credit monitoring and identity theft recovery services to affected individuals.
California clockDiscovered Jun 15, 2024 → Notified Sep 9, 202486d ✗ CA 60-day late12 weeks discovery → filing
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_84b9bc1e6e2c9af3Oregon State AGfiled 2024-09-06Candidate
- bd_be28cfef1f911eb2Montana State AGfiled 2024-09-06Verified
- bd_da3c5ebbf226f9afIndiana State AGfiled 2024-09-06Verified
- bd_6017efd0f0cc191aVermont State AGfiled 2024-09-05(1d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 3d gap
- bd_1e7bc1d2603ff856New Hampshire State AGfiled 2024-09-09(3d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-591349
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 6, 2024
- Raw hash
- 54b2696453f6e4ce29aef3f9e10a6074eefc875fcc3bb89704a4bb4afa13763c
Reporting entity
- Name
- Slim Chickensnorm: slim chickens
- Domain
- slimchickens.com
Victim entity
- Name
- Slim Chickensnorm: slim chickens
- Domain
- slimchickens.com
Incident
- Discovered
- Jun 15, 2024
- Materiality determined
- —
- Notification sent
- Sep 9, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Reported this incident to federal law enforcement, and regulatory authorities, as required by law
Compliance
- Time to disclose
- 12 weeks(83 days from discovery to filing)
- Compliance flags
- CA 60-day late · 86d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jun 15, 2024→ Notified: Sep 9, 202486d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.