HackingCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTMediumContained
Hoosier Racing Tire Corporation
bd_a29b8f8229f16f10 · schema v1 · pii pii-v1
Full breach record for Hoosier Racing Tire Corporation →Hoosier Racing Tire Corp. reported an external system breach (hacking) occurring between November 26, 2020, and September 16, 2022, discovered on March 9, 2023. The incident affected 2,972 individuals, including 12 Maine residents. Acquired data included names and financial account/credit card numbers. The company provided written notification on April 14, 2023, and offered 24 months of identity theft protection services through IDX.
Maine clockDiscovered Mar 9, 2023 → Filed with AG Apr 14, 202336d ⏱ ME AG >30d5 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_1e9e57ceccd464beVermont State AGfiled 2023-04-14Verified
- bd_7455fe533175010dNew Hampshire State AGfiled 2023-04-14Verified
- bd_f3b47d19c1b7f40dMontana State AGfiled 2023-04-14Verified
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/cba84833-35d9-44b4-8958-57c94c7c2b55.shtml
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 14, 2023
- Raw hash
- 19ad74646bcda296ac01849349fed40215de76125e9dfd2df9f1b77281749344
Reporting entity
- Name
- Hoosier Racing Tire Corporationnorm: hoosier racing tire
Victim entity
- Name
- Hoosier Racing Tire Corporationnorm: hoosier racing tire
Incident
- Discovered
- Mar 9, 2023
- Materiality determined
- —
- Notification sent
- Apr 14, 2023
- Affected individuals
- 2,972
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 5 weeks(36 days from discovery to filing)
- Compliance flags
- ME AG >30d · 36d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Mar 9, 2023→ Filed with AG: Apr 14, 202336d 30 days (soft) ME AG >30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.