Rand McNally
bd_92050fbd42dd7819 · schema v1 · pii pii-v1
Full breach record for Rand McNally →Rand McNally notified NH AG of a breach affecting 4 NH residents. Unauthorized access occurred starting Sept 2016 via malware in ecommerce software. Discovered Feb 28, 2017. Data exposed: names, usernames/emails, credit/debit card numbers. Notifications sent March 13, 2017, including 12 months credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 1, 2016
Begins
Feb 28, 2017
Discovered
Mar 17, 2017
Filed
vs. sector median
16 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Massachusetts State AGbd_facb8b75cd98db722017-03-24 · +7dVerified
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Mar 17 (NH), last Mar 24 (MA) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.