North 40 Outfitters
bd_c382d77b4fab019c · schema v1 · pii pii-v1
Full breach record for North 40 Outfitters →3 incidents on fileNorth 40 Outfitters notified the NH AG that suspicious activity on its online payment platform between Feb 2 and Nov 20, 2018, may have exposed customer names, card numbers, CVVs, and usernames/passwords. Discovered Nov 8, 2018. 83 NH residents affected. Notices sent Feb 14, 2019. Forensic investigation engaged.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 2, 2018
Begins
Nov 8, 2018
Discovered
Feb 19, 2019
Filed
vs. sector median
+7 wks slower
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Montana State AGbd_4b668a3582761b702019-02-14 · +5dCandidate
- Washington State AGbd_91ec3d5509abff2e2019-02-14 · +5dVerified by operator
- Oregon State AGbd_9f6005ba312469512019-02-14 · +5dVerified
- Massachusetts State AGbd_b52d773a93fb37ee2019-02-14 · +5dVerified
Show 2 more filings ↓Show fewer ↑up to 69d gap
- California State AGbd_e64ead328d32d9722019-02-14 · +5dVerified
- New Hampshire State AGbd_413daf193a69e1642019-04-29 · +69dVerified
Filing propagation · 7 filings · 6 states
View merged incident ↗Pattern: first filing Feb 14 (MT), last Apr 29 (NH) — a 74-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.