HackingCustomer Data InvolvedPIIFINANCIAL_ACCOUNTLowContained
Polished.com
bd_db29c5b2190a36be · schema v1 · pii pii-v1
Full breach record for Polished.com →Polished.com notified the NH Attorney General of a cybersecurity incident where an unauthorized actor accessed its website, AppliancesConnection.com, between March 16 and April 23, 2023. The breach potentially exposed payment card information of 57 New Hampshire residents. Polished engaged a cybersecurity firm, mailed notifications, and is enhancing security protocols.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_913e89bd03622f31Vermont State AGfiled 2023-05-22Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/polished-20230522.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 22, 2023
- Raw hash
- 4f2c6a572999ba54f5a1b48926d66ecba4eb7afd2727e8c013f1a2f2f054ee8f
Reporting entity
- Name
- Polished.comnorm: polishedcom
- Domain
- polished.com
Victim entity
- Name
- Polished.comnorm: polishedcom
- Domain
- polished.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 22, 2023
- Affected individuals
- 57
- Data types
- PIIFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.