Shutterfly, Inc.
bd_cb80ce623280cd26 · schema v1 · pii pii-v1
Full breach record for Shutterfly, Inc. →5 incidents on fileShutterfly, Inc. notified the NH AG of unauthorized access to a Workday test database on Jan 11, 2018, discovered Mar 20, 2018. Access was via fraudulent employee credentials. Data included NH residents' names, SSNs, DOB, bank accounts, and salary. 6 NH residents affected. Shutterfly engaged forensic investigators, notified law enforcement, and offered 1-year credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 11, 2018
Begins
Mar 20, 2018
Discovered
Mar 28, 2018
Filed
vs. sector median
17 wks faster
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- California State AGbd_11d7d5910ae894562018-03-28Candidate
- Massachusetts State AGbd_d155b1c960bb7a5d2018-03-28Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.