HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedFINANCIAL_ACCOUNTPIILowContained
Tennis Warehouse LLC
bd_bebb4c9aeed4f3d8 · schema v1 · pii pii-v1
Full breach record for Tennis Warehouse LLC →Tennis Warehouse, LLC experienced a data security incident on October 1, 2021, involving unauthorized access to payment card information. The breach affected payment card numbers, expiration dates, and security codes. The company engaged forensic investigators, reported the incident to payment card brands and law enforcement, and enhanced site security. Notifications were sent to affected individuals on December 16, 2021.
California clockDiscovered Oct 15, 2021 → Notified Dec 16, 202162d ✗ CA 60-day late9 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_09160cf230e387c1Washington State AGfiled 2021-12-17(1d gap)Verified
- bd_051bb6c44cafb8baHawaii State AGfiled 2021-12-16(2d gap)Verified
- bd_35efaac39879658fSouth Carolina State AGfiled 2021-12-16(2d gap)Verified
- bd_8bf42db7d8a30581Oregon State AGfiled 2021-12-16(2d gap)Verified
Show 4 more filings ↓Show fewer ↑up to 115d gap
- bd_db69f355c2004d64Delaware State AGfiled 2021-12-16(2d gap)Verified
- bd_e231ce333384e970Maine State AGfiled 2021-12-16(2d gap)Candidate
- bd_e2f9ba2ba5e4e97cMontana State AGfiled 2021-12-16(2d gap)Verified
- bd_15c9f8f75b6811f0California State AGfiled 2022-04-12(115d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-548691
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 18, 2021
- Raw hash
- 1987223b99d0190ce16ce5c64b6e2467740bdfca25c9033464d1cb5bc9b48ce0
Reporting entity
- Name
- Tennis Warehouse LLCnorm: tennis warehouse
Victim entity
- Name
- Tennis Warehouse LLCnorm: tennis warehouse
Incident
- Discovered
- Oct 15, 2021
- Materiality determined
- —
- Notification sent
- Dec 16, 2021
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 9 weeks(64 days from discovery to filing)
- Compliance flags
- CA 60-day late · 62d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Oct 15, 2021→ Notified: Dec 16, 202162d 60 days (analyst band, pre-2026 discoveries) CA 60-day late
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.