Sears Holdings Corporation
bd_e91e1c561709d7b7 · schema v1 · pii pii-v1
Full breach record for Sears Holdings Corporation →3 incidents on fileSears Holdings notified Montana AG of a third-party vendor incident where a malicious script collected customer names, addresses, and payment card info from Sears.com and Kmart.com. Occurred Sept 27-Oct 12, 2017; discovered mid-March 2018. No specific count disclosed.
J jump to incidentP pin to compareR raw source
Incident timeline
Sep 27, 2017
Begins
Mar 1, 2018
Discovered
Apr 25, 2018
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Washington State AGbd_4127990c5317e1c82018-04-24 · +1dCandidate
- New Hampshire State AGbd_542e3870138514372018-04-24 · +1dVerified
- Oregon State AGbd_34500406ffb3c68c2018-05-17 · +22dVerified
- South Carolina State AGbd_6ccd597659c183d32018-05-18 · +23dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Apr 24 (WA), last May 18 (SC) — a 24-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.