North 40 Outfitters
bd_9ecd23c311d8518a · schema v1 · pii pii-v1
Full breach record for North 40 Outfitters →3 incidents on fileNorth 40 Outfitters disclosed unauthorized access to customer credit and debit card data from its e-commerce website. The incident affected transactions between January 20, 2017, and January 29, 2018. Data exposed included names, card numbers, expiration dates, CVVs, and potentially account credentials. 864 California residents were notified on February 23, 2018. The company launched an investigation, reported to credit card companies, and implemented additional safeguards.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 20, 2017
Begins
Jan 29, 2018
Discovered
Feb 23, 2018
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Washington State AGbd_069c13cfc48be80e2018-02-23Verified by operator
- Oregon State AGbd_683500fb75bce2642018-02-23Verified
- New Hampshire State AGbd_776f2a1b48b8922d2018-02-23Verified
- Montana State AGbd_b10dceeda50d51cf2018-02-23Verified
Show 1 more filing ↓Show fewer ↑
- Massachusetts State AGbd_b15fa94c229c56f62018-02-23Verified
Filing propagation · 6 filings · 6 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.