DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitStolen CredentialsTargetedCustomer Data InvolvedIdentity (basic)Financial accountLowContained

X-Rite Incorporated

bd_56f974ab8e0aa90c · schema v1 · pii pii-v1

Severity

Low

Discovered

Mar 23, 2012

Filed

Apr 9, 2012

To disclose

17 days

Affected

337state residents only

Linked

3 filings

Confidence

66%
Full breach record for X-Rite Incorporated

X-Rite Incorporated notified the New Hampshire Attorney General of a breach affecting 337 NH residents. Unauthorized access began approx. Feb 6, 2012; discovered March 23, 2012. Attackers accessed a database server containing names, contact info, and credit card data. X-Rite disabled the server, rebuilt hardware, changed passwords, and notified law enforcement. Notifications sent April 6, 2012, offering 1 year of credit monitoring.

Incident timeline

undetected · 46 days
discovery → filing · 17 days

Feb 6, 2012

Begins

Mar 23, 2012

Discovered

Apr 9, 2012

Filed

vs. sector median

5 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
New Hampshire State AGApr 9 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.