DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitCapture Stored DataTargetedData ExfiltratedIdentity (basic)Financial accountLowActive

Carus Books

bd_a196e2db53bd7cb1 · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

May 8, 2007

To disclose

Affected

14state residents only

Confidence

66%
Full breach record for Carus Books

Carus Publishing Company notified the NH AG of a website breach occurring between early April and early May 2007. Hackers accessed customer data including names, addresses, and credit card details. 14 NH residents affected. Carus contacted the FBI and card networks, initiated a security audit, and altered the website.

Incident timeline

Apr 1, 2007

Begins

May 8, 2007

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed14 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.