Ballistic Products, Inc.
bd_cc0ec26377c09de6 · schema v1 · pii pii-v1
Full breach record for Ballistic Products, Inc. →Ballistic Products, Inc. notified Washington AG of a third-party vendor malware incident affecting payment card data (names, card numbers, CVV, billing addresses) for transactions between Sept 2020 and Feb 2022. 1,242 WA residents notified in Sept 2022. Vendor removed malware and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 18, 2020
Begins
Apr 1, 2022
Discovered
Sep 3, 2022
Filed
vs. sector median
+14 wks slower
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- Montana State AGbd_6af97512dc8d42cb2022-09-05 · +2dVerified
- Indiana State AGbd_ee76c2033e23652f2022-09-01 · +2dVerified
- California State AGbd_0a9e5025b2e7d8d82022-09-09 · +6dVerified
- Maine State AGbd_aaecbad195251dcd2022-09-13 · +10dVerified
Show 3 more filings ↓Show fewer ↑up to 18d gap
- Oregon State AGbd_c6b9c657e9d72d472022-09-13 · +10dVerified
- New Hampshire State AGbd_4e5f71d683ca579d2022-09-21 · +18dVerified
- Massachusetts State AGbd_ea262a4f9f55c5612022-09-21 · +18dVerified
Filing propagation · 8 filings · 8 states
View merged incident ↗Pattern: first filing Sep 1 (IN), last Sep 21 (MA) — a 20-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.