Aptos
bd_3b0817bc12a5f5cb · schema v1 · pii pii-v1
Full breach record for Aptos →Aptos Inc., a third-party payment processing technology provider, experienced a malware-based data breach affecting 40 online retailers, including Mrs. Prindables. Unauthorized persons placed malware on Aptos' platform between February 2016 and December 2016. Aptos discovered the breach in November 2016 but delayed notification pending law enforcement investigation. Exposed data included names, addresses, emails, phone numbers, and payment card numbers with expiration dates. CVV codes were not exposed. Aptos engaged cybersecurity firms to remove malware, strengthened access controls, and offered credit monitoring to affected customers.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 1, 2016
Begins
Nov 1, 2016
Discovered
Feb 27, 2017
Filed
vs. sector median
+4 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_240674ed1319758d2017-02-27Verified
- New Hampshire State AGbd_0ef30bb08f7149d82017-02-25 · +2dCandidate
- California State AGbd_7b839a7a8a9f571c2017-02-25 · +2dVerified
- New Hampshire State AGbd_d70604f71608d8642017-03-03 · +4dVerified
Show 1 more filing ↓Show fewer ↑up to 25d gap
- Oregon State AGbd_95597eac1553f5362017-03-24 · +25dCandidate
Filing propagation · 6 filings · 4 states
View merged incident ↗Pattern: first filing Feb 25 (NH), last Mar 24 (OR) — a 27-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.