Boomerang Tags
bd_4a97e4e34dc64554 · schema v1 · pii pii-v1
Full breach record for Boomerang Tags →Boomerang Tags reported that unauthorized individuals installed malicious software on its website server, compromising payment card data (name, address, card number, expiration date, security code) of visitors who made purchases between July 4, 2013, and February 18, 2014. The company contained the incident, engaged forensic investigators, and is replacing its payment processor and redesigning its website with enhanced security.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 4, 2013
Begins
Apr 30, 2014
Filed
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- New Hampshire State AGbd_234575a45e7d57fc2014-04-25 · +5dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Apr 25 (NH), last Apr 30 (CA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.