InvoiceCloud
bd_72c05a49298b8e95 · schema v1 · pii pii-v1
Full breach record for InvoiceCloud →InvoiceCloud, a provider of digital payment solutions, identified unauthorized code on systems supporting customer payment websites on June 16, 2025. The incident likely resulted in the scraping of names, addresses, emails, payment card numbers, CVVs, and expiration dates. Social Security numbers and bank account information were not impacted. InvoiceCloud engaged forensic investigators, contained the issue, and is offering one year of credit monitoring and identity restoration services to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 16, 2025
Begins
Jun 16, 2025
Discovered
Jul 16, 2025
Filed
vs. sector median
14 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_0f427a53a9556e142025-07-16Verified
- New Hampshire State AGbd_41688672135d043c2025-07-16Candidate
- Maine State AGbd_83a6de7d7eecefa42025-07-16Verified
- Nebraska State AGbd_bc6e60159c3eebc62025-07-16Verified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.