Combat Brands
bd_a907d6236eaa227c · schema v1 · pii pii-v1
Full breach record for Combat Brands →3 incidents on fileCombat Brands, LLC disclosed a cyber-attack involving malware that potentially compromised debit and credit card data (cardholder name, address, card number, expiration date, CVV) for customers of its websites (fightgear.com, fitness1st.com, ringside.com, combatsports.com) between July 1, 2015, and October 6, 2017. The incident was discovered on October 6, 2017, when unusual code was identified during routine scans. The company engaged third-party forensic investigators and removed the malware.
J jump to incidentP pin to compareR raw source
Incident timeline
Jul 1, 2015
Begins
Oct 6, 2017
Discovered
Nov 29, 2017
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_2165c6945c07d19e2017-11-29Candidate
- Massachusetts State AGbd_719e0f003fc204c82017-11-29Verified
- Washington State AGbd_c19d9bec8cfbd35b2017-12-11 · +12dVerified by operator
Filing propagation · 4 filings · 4 states
View merged incident ↗Pattern: first filing Nov 29 (MT), last Dec 11 (WA) — a 12-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.