Bombas
bd_e86dfbd599fe370a · schema v1 · pii pii-v1
Full breach record for Bombas →4 incidents on fileBombas, LLC filed a supplemental notice with the NH AG regarding a 2014-2015 Magento vulnerability. Malicious code injected into the e-commerce platform exposed customer names, addresses, and credit card info. Total affected: ~39,561 (252 NH residents). Bombas is offering 24 months of credit monitoring via Kroll and has migrated to a new platform.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 27, 2014
Begins
Aug 31, 2018
Filed
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- California State AGbd_8eb047ffecafa64c2018-08-31Candidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.