TEMPUR-PEDIC MANAGEMENT, LLC
bd_4cf6fd903fad9cbf · schema v1 · pii pii-v1
Full breach record for TEMPUR-PEDIC MANAGEMENT, LLC →Tempur-Pedic notified Montana residents of a security incident involving its website hosting vendor. An unauthorized individual accessed portions of the website and installed malicious software to capture payment card information (names, addresses, card numbers, expiration dates) from purchases made prior to September 30, 2016. The vendor engaged forensic investigators, removed malware, and reported the incident to federal law enforcement. One year of complimentary identity protection services was offered to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Apr 5, 2017
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- New Hampshire State AGbd_bfb66da280bec35f2017-04-04 · +1dVerified
- California State AGbd_d46247ee45324af52017-04-04 · +1dVerified
- Washington State AGbd_d9ee40b43f54ddd22017-04-04 · +1dCandidate
- South Carolina State AGbd_d441b936c45a4cf72017-04-10 · +5dVerified
Show 2 more filings ↓Show fewer ↑up to 7d gap
- Hawaii State AGbd_b9421369e4f1231a2017-04-11 · +6dVerified
- Oregon State AGbd_3b6e4ce3b3e36db22017-04-12 · +7dVerified by operator
Filing propagation · 7 filings · 7 states
View merged incident ↗Pattern: first filing Apr 4 (NH), last Apr 12 (OR) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.