DisclosureLens
HackingRetail & ConsumerRetailStolen CredentialsData ExfiltratedCustomer Data InvolvedPCIFinancial accountFinancial credentialsHighContained

Target Corporation

bd_b2b9ac661af55db5 · schema v1 · pii pii-v1

Severity

High

Discovered

Filed

Dec 20, 2013

To disclose

Affected

121,000state residents only

Linked

5 filings

Confidence

65%
Full breach record for Target Corporation3 incidents on file

Target Corporation notified the Hawaii Office of Consumer Protection of unauthorized access to payment card data (names, card numbers, CVVs) from U.S. stores between Nov 27 and Dec 15, 2013. Approximately 121,000 accounts with transactions in Hawaii were potentially affected. Target engaged forensic investigators and alerted authorities.

Hawaii clock HI CRA notice due
no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.

Incident timeline

Nov 27, 2013

Begins

Dec 20, 2013

Filed

This filing is one of 5 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (4) · sorted by filing gap

Filing propagation · 5 filings · 4 states

View merged incident ↗
New Hampshire State AGDec 19 · first
Hawaii State AG+1d · this page

Pattern: first filing Dec 19 (NH), last Jan 2 (CA) — a 14-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.