HackingDelayed DiscoveryIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Peterson Holding Company
bd_38b9913e4cd11313 · schema v1 · pii pii-v1
Full breach record for Peterson Holding Company →Peterson Holding Company notified consumers of a data breach occurring June 27-28, 2023, where an unauthorized actor accessed computer systems. Potentially affected data includes names and variable sensitive elements (e.g., SSN, financial data). The company engaged law enforcement, isolated servers, reset passwords, and offered Equifax credit monitoring. Notification sent August 1, 2024.
Vermont clock✗ VT AG >45 bday13 months discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_4ae753a02996f2d6Maine State AGfiled 2024-08-01Candidate
- bd_80a04d11b9056960California State AGfiled 2024-08-01Verified
- bd_cdf9caf71ed0fd2bOregon State AGfiled 2024-08-01Verified
- bd_df3b8472c353c14fMontana State AGfiled 2024-08-01Verified
Show 1 more filing ↓Show fewer ↑
- bd_f6d54dd97d83a8e5Indiana State AGfiled 2024-08-01Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-08-01-peterson-holding-company-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 1, 2024
- Raw hash
- f21763f67fa9bb75805d5386786a6dd23f17fdb2df251b669df4a62824e59b9d
Reporting entity
- Name
- Peterson Holding Companynorm: peterson holding
- Domain
- petersoncat.com
Victim entity
- Name
- Peterson Holding Companynorm: peterson holding
- Domain
- petersoncat.com
Incident
- Discovered
- Jun 27, 2023
- Materiality determined
- Aug 1, 2024
- Notification sent
- Aug 1, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- reported the incident to law enforcementnotifying relevant regulatory authorities
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 13 months(401 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.