Aptos
bd_7b839a7a8a9f571c · schema v1 · pii pii-v1
Full breach record for Aptos →Aptos, Inc., a third-party e-commerce platform provider, experienced a malware intrusion between February and December 2016, discovered in November 2016. Attackers placed malware on Aptos servers, gaining access to customer payment card data (card numbers, expiration dates) and basic PII (name, address, phone, email) for approximately 10,000 clients, including Alpha Industries. Notification was delayed by law enforcement request. Aptos engaged forensic investigators, removed malware, and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 1, 2016
Begins
Nov 1, 2016
Discovered
Feb 25, 2017
Filed
vs. sector median
+4 wks slower
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- New Hampshire State AGbd_0ef30bb08f7149d82017-02-25Candidate
- Massachusetts State AGbd_240674ed1319758d2017-02-27 · +2dVerified
- California State AGbd_3b0817bc12a5f5cb2017-02-27 · +2dVerified
- New Hampshire State AGbd_d70604f71608d8642017-03-03 · +6dVerified
Show 1 more filing ↓Show fewer ↑up to 27d gap
- Oregon State AGbd_95597eac1553f5362017-03-24 · +27dCandidate
Filing propagation · 6 filings · 4 states
View merged incident ↗Pattern: first filing Feb 25 (NH), last Mar 24 (OR) — a 27-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.