Penn, LLC
bd_7f255a5dfe84e7ec · schema v1 · pii pii-v1
Full breach record for Penn, LLC →6 incidents on filePulse TV (Penn LLC) disclosed a data breach affecting customers who made purchases between September 1, 2021, and February 2, 2022. The incident was caused by a malware attack on a webserver hosted by third-party vendor Freestyle Solutions, Inc. The malware captured payment card data, including card numbers, expiration dates, and CVVs, as well as names, addresses, and email addresses. Pulse TV discovered the specific cause on February 2, 2022, after an investigation initiated in March 2021. The company has disabled the malware, engaged forensic experts, and is implementing remediation measures including two-factor authentication and migrating payment systems.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 1, 2021
Begins
Feb 2, 2022
Discovered
Mar 15, 2022
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- New Hampshire State AGbd_b1f86ecba6b262572022-01-27 · +47dVerified
- California State AGbd_1f86650296908cc12022-01-25 · +49dVerified by operator
- Indiana State AGbd_73bf248be5b5c7b52022-01-25 · +49dVerified
- South Carolina State AGbd_758e0a44c15a009c2022-01-25 · +49dVerified
Show 2 more filings ↓Show fewer ↑up to 60d gap
- Massachusetts State AGbd_a820dca495f3145d2022-01-25 · +49dVerified
- Oregon State AGbd_2da599b0d158b3fe2022-01-14 · +60dCandidate
Filing propagation · 7 filings · 6 states
View merged incident ↗Pattern: first filing Jan 14 (OR), last Mar 15 (CA) — a 60-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.