HackingData ExfiltratedTargetedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Slim Chickens
bd_6017efd0f0cc191a · schema v1 · pii pii-v1
Full breach record for Slim Chickens →Slim CD, Inc., a payment processing gateway, notified consumers of a data breach involving unauthorized access to its systems between August 2023 and June 2024. The incident potentially exposed names, addresses, credit card numbers, and expiration dates for customers of merchants using Slim CD's services. The company engaged third-party investigators and notified law enforcement.
Vermont clock✗ VT AG >45 bday12 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_383cec170515bd04California State AGfiled 2024-09-06(1d gap)Verified
- bd_84b9bc1e6e2c9af3Oregon State AGfiled 2024-09-06(1d gap)Candidate
- bd_be28cfef1f911eb2Montana State AGfiled 2024-09-06(1d gap)Verified
- bd_da3c5ebbf226f9afIndiana State AGfiled 2024-09-06(1d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 4d gap
- bd_1e7bc1d2603ff856New Hampshire State AGfiled 2024-09-09(4d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-09-05-slim-cd-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 5, 2024
- Raw hash
- cdde1e67d8c12432e7311ed21d0b2038b3fb34ffd86afadd65d5bb3b6444c492
Reporting entity
- Name
- Slim Chickensnorm: slim chickens
- Domain
- slimchickens.com
Victim entity
- Name
- Slim Chickensnorm: slim chickens
- Domain
- slimchickens.com
Incident
- Discovered
- Jun 15, 2024
- Materiality determined
- —
- Notification sent
- Sep 5, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported incident to federal law enforcementReported incident to regulatory authorities
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 12 weeks(82 days from discovery to filing)
- Compliance flags
- VT AG >45 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.