Bandolier
bd_eec6e05caa309e01 · schema v1 · pii pii-v1
Full breach record for Bandolier →Bandolier (dba Karis & Drake) issued a consumer notification regarding a cybersecurity incident involving unauthorized access to customer information. The breach likely resulted from a phishing attack compromising employee credentials. Affected data includes names, Social Security numbers, and dates of birth. The company is offering 90 days of complimentary credit monitoring to affected individuals across multiple states including Montana, Maryland, New Mexico, New York, North Carolina, and Rhode Island.
J jump to incidentP pin to compareR raw source
Incident timeline — partial
? — ?
Breach window unknown
Jul 11, 2024
Filed
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- Vermont State AGbd_357aa7c25f2200be2024-07-11Candidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.