Luxottica of America Inc.
bd_eb19ea65ee2219ae · schema v1 · pii pii-v1
Full breach record for Luxottica of America Inc. →3 incidents on fileLuxottica of America Inc. reported an incident where an unauthorized actor made automated requests to its appointment scheduling web application between August 9 and August 28, 2020. The attack exploited a public-facing application. Approximately 2 individuals in New Hampshire were affected, with potential exposure of Social Security numbers and payment card information. Luxottica took the application offline, engaged third-party cybersecurity specialists, implemented additional access restrictions, and notified federal law enforcement. Credit and identity monitoring services were offered to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 9, 2020
Begins
Aug 9, 2020
Discovered
Oct 28, 2020
Filed
vs. sector median
1 wks faster
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_1185a1eadb310dfa2020-10-29 · +1dVerified
- Washington State AGbd_24fc3affc6365f2a2020-10-27 · +1dVerified
- HHS OCRbd_61865ccad2d509242020-10-27 · +1dVerified
- Oregon State AGbd_62900c8b7ad2cd812020-12-02 · +35dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Oct 27 (WA), last Dec 2 (OR) — a 36-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.