HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedPIIPCIIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Hi-Tec Sports USA, Inc.
bd_7a8b8a86df040fe0 · schema v1 · pii pii-v1
Full breach record for Hi-Tec Sports USA, Inc. →Hi Tec Sports USA, Inc. disclosed a data breach affecting its online order systems (Magnum Boots and Hi-Tec websites). Malicious code was inserted into the order completion page, capturing payment card information (including CVV), names, addresses, and emails. The breach period spanned from September 21, 2014, to March 11, 2016. Hi-Tec engaged a security firm, stopped accepting payments, and is developing a new e-commerce site. No specific count of affected individuals was provided.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_c209fbd98d7f5070Oregon State AGfiled 2016-05-11Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-61796
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 11, 2016
- Raw hash
- ab04ffc85df7b85f7a8cf8b3d0c723192185233bf552202fa3fe490945b290d5
Reporting entity
- Name
- Hi-Tec Sports USA, Inc.norm: hi tec sports usa
Victim entity
- Name
- Hi-Tec Sports USA, Inc.norm: hi tec sports usa
Incident
- Discovered
- Mar 11, 2016
- Materiality determined
- Jan 24, 2016
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIPCIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 9 weeks(61 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.