AeroGrow International Inc
bd_f0a43c62e782c202 · schema v1 · pii pii-v1
Full breach record for AeroGrow International Inc →2 incidents on fileAeroGrow International Inc. notified Washington AG of a cyberattack where malicious code compromised payment card information (number, expiration, CVV) via an eCommerce vendor's payment page. The code was present from Oct 29, 2018, to Mar 4, 2019. 667 Washington residents affected. AeroGrow removed code, secured site, notified law enforcement, engaged third-party experts, and offered 1 year of Experian identity protection.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 29, 2018
Begins
Mar 4, 2019
Discovered
Apr 5, 2019
Filed
vs. sector median
3 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Massachusetts State AGbd_264c84d3fb8cd5502019-04-04 · +1dVerified
- California State AGbd_8a5652e1e15958282019-04-04 · +1dVerified
- Oregon State AGbd_96daf0e6a27f8aaa2019-04-04 · +1dCandidate
- Montana State AGbd_c27e06adbb0023f92019-04-04 · +1dVerified
Show 1 more filing ↓Show fewer ↑up to 12d gap
- New Hampshire State AGbd_a3366bdb8a26803f2019-04-17 · +12dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Apr 4 (MA), last Apr 17 (NH) — a 13-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.