APISource, Inc.
bd_460507e2e31b887f · schema v1 · pii pii-v1
Full breach record for APISource, Inc. →APISource, Inc. notified the NH AG of a data event affecting 1 NH resident. Malicious code on its ecommerce website captured customer name, address, payment card info, and email/password between Dec 2019 and Apr 2020. Discovered March 24, 2020. Notices sent May 4, 2020. Remediation included additional website safeguards and 1 year of Kroll credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 9, 2019
Begins
Mar 24, 2020
Discovered
May 8, 2020
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_8c0df36f0b5936232020-05-08Verified
- Montana State AGbd_22d972002b95e3472020-05-04 · +4dCandidate
- Indiana State AGbd_4968388dab3ff8f62020-05-04 · +4dVerified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.