HackingStolen CredentialsCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Heinemann
bd_4313b6d9944c3338 · schema v1 · pii pii-v1
Full breach record for Heinemann →New Hampshire Attorney General's Office received a breach notification from Pearson Education, Inc. on behalf of its affiliate, Heinemann-Raintree Publishers, on July 15, 2008. The incident involved unauthorized access to a customer database in January 2007, potentially exposing credit card numbers and personal information of 16 New Hampshire residents. Pearson notified affected customers and the credit card processor, took the websites offline temporarily, and restored them with security corrections.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed16 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/pearson-education-20080715.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 15, 2008
- Raw hash
- 336717f0c9fca2d64d80df04726b2e37e27825639d93c62ba65fb9261399586f
Reporting entity
- Name
- Pearson Assessments USnorm: pearson assessments us
- Domain
- pearsonassessments.com
Victim entity
- Name
- Heinemannnorm: heinemann
- Domain
- heinemann.com
Incident
- Discovered
- Jan 1, 2008
- Materiality determined
- —
- Notification sent
- Jul 11, 2008
- Affected individuals
- 16
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Regulator citations
- Reported breach to New Hampshire Attorney General's Office Consumer Protection Bureau
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 28 weeks(196 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.