DisclosureLens
MalwareRetail & ConsumerRetailInfostealerData ExfiltratedPIIFinancial accountFinancial credentialsLowContained

Slate & Tell

bd_a064032a39efd74c · schema v1 · pii pii-v1

Severity

Low

Discovered

Nov 24, 2020

Filed

Apr 2, 2021

To disclose

18 weeks

Affected

136state residents only

Linked

7 filings

Confidence

64%
Full breach record for Slate & Tell

Slate & Tell LLC notified customers of a cyber-attack on its e-commerce website involving malware that stole payment card data (names, addresses, card numbers, CVVs) from purchases made between March 2020 and January 2021. The company engaged forensic specialists, secured transactions, and notified card brands and regulators.

Incident timeline

undetected · 268 days
discovery → filing · 18 weeks / 129 days

Mar 1, 2020

Begins

Nov 24, 2020

Discovered

Apr 2, 2021

Filed

vs. sector median

+11 wks slower

This filing is one of 7 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (6) · sorted by filing gap

Show 2 more filings

Filing propagation · 7 filings · 7 states

View merged incident ↗
Indiana State AGApr 2 · first
Oregon State AGApr 2 · first
California State AGApr 2 · first
Maine State AGApr 2 · first
Washington State AGApr 2 · first
Montana State AGApr 2 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.