Pen Factory
bd_48b2b81197880b76 · schema v1 · pii pii-v1
Full breach record for Pen Factory →Pen Factory notified customers that malicious code (likely a skimmer) was placed on its website between September 2019 and April 2020, capturing checkout data including names, addresses, and credit/debit card info. The company removed the code, alerted credit card brands, and secured the site. No SSNs were impacted.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 1, 2019
Begins
Apr 15, 2020
Discovered
Jun 5, 2020
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Massachusetts State AGbd_12b5b741d11e7e152020-06-05Verified
- California State AGbd_5f68a92ee8ca1c892020-06-05Verified
- New Hampshire State AGbd_9fc99454da68a8c92020-06-05Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.