DisclosureLens
HackingRetail & ConsumerRetailStolen CredentialsCustomer Data InvolvedIdentity (basic)Financial accountLowContained

Heinemann

bd_4313b6d9944c3338 · schema v1 · pii pii-v1

Severity

Low

Discovered

Jan 1, 2008

Filed

Jul 15, 2008

To disclose

28 weeks

Affected

16state residents only

Linked

2 filings

Confidence

66%
Full breach record for Heinemann

New Hampshire Attorney General's Office received a breach notification from Pearson Education, Inc. on behalf of its affiliate, Heinemann-Raintree Publishers, on July 15, 2008. The incident involved unauthorized access to a customer database in January 2007, potentially exposing credit card numbers and personal information of 16 New Hampshire residents. Pearson notified affected customers and the credit card processor, took the websites offline temporarily, and restored them with security corrections.

Incident timeline

undetected · 365 days
discovery → filing · 28 weeks / 196 days

Jan 1, 2007

Begins

Jan 1, 2008

Discovered

Jul 15, 2008

Filed

vs. sector median

+20 wks slower

This filing is one of 2 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
Massachusetts State AGJul 15 · first
New Hampshire State AGJul 15 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.