Big Fish Games, Inc.
bd_ae6b5b6ce854235a · schema v1 · pii pii-v1
Full breach record for Big Fish Games, Inc. →Big Fish Games disclosed that an unknown criminal installed malware on its online billing and payment pages between December 24, 2014, and January 6, 2015. The malware intercepted customer payment information, including name, address, card number, expiration date, and CVV2 code. The incident was discovered on January 12, 2015. The company removed the malware, reported the incident to law enforcement and card networks, and offered one year of identity protection services to affected customers.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 24, 2014
Begins
Jan 12, 2015
Discovered
Feb 13, 2015
Filed
vs. sector median
14 wks faster
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_8e8d945628de6bc32015-02-10 · +3dVerified
- Massachusetts State AGbd_7eed9184c57cab992015-02-18 · +5dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Feb 10 (NH), last Feb 18 (MA) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.