DisclosureLens
Social EngineeringManufacturingManufacturingPhishingStolen CredentialsEmployee Data InvolvedIdentity (basic)Government IDEmploymentMediumContained

SARIS CYCLING GROUP, INC.

bd_97e5041f5d818462 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Oct 18, 2017

Filed

Jan 8, 2018

To disclose

12 weeks

Affected

2state residents only

Confidence

67%
Full breach record for SARIS CYCLING GROUP, INC.

Saris Cycling Group reported a phishing incident where an employee clicked a malicious link and entered credentials, granting an unknown actor access to their email account. The breach affected 2 New Hampshire residents (employees), exposing names, addresses, and potentially Social Security Numbers. The incident was discovered on October 18, 2017. Saris engaged forensic investigators, secured the account, and provided credit monitoring to affected individuals. This filing is a supplemental notice to the NH Attorney General.

Incident timeline

discovery → filing · 12 weeks / 82 days

Oct 18, 2017

Discovered

Jan 8, 2018

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.