DisclosureLens
MalwareRetail & ConsumerRetailInfostealerCustomer Data InvolvedIdentity (basic)Financial accountMediumContained

パールイズミ(Pearl Izumi)

bd_62a8af8cb184502b · schema v1 · pii pii-v1

Severity

Medium

Discovered

Feb 18, 2013

Filed

Apr 29, 2013

To disclose

10 weeks

Affected

1,250

Confidence

66%
Full breach record for パールイズミ(Pearl Izumi)2 incidents on file

Pearl Izumi experienced a security breach involving malware introduced into its online store that captured customer information, including names, addresses, phone numbers, account numbers, and credit card data. The malware was discovered on February 18, 2013. While initially believed to affect only seven customers, a subsequent forensic investigation revealed up to 1,250 customers may have been affected, including four New Hampshire residents. Pearl Izumi retained a third-party forensic investigator, notified affected customers and credit bureaus, and offered one year of complimentary identity monitoring.

Incident timeline

discovery → filing · 10 weeks / 70 days

Feb 18, 2013

Discovered

Apr 29, 2013

Filed

vs. sector median

+2 wks slower

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1,250 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.