DisclosureLens
Social EngineeringRetail & ConsumerRetailPhishingStolen CredentialsTargetedData ExfiltratedIdentity (basic)Financial accountPIILowActive

Lasko Group, Inc.

bd_f5b3ac1b6348b98b · schema v1 · pii pii-v1

Severity

Low

Discovered

Jul 2, 2014

Filed

Jul 30, 2014

To disclose

28 days

Affected

87state residents only

Linked

3 filings

Confidence

66%
Full breach record for Lasko Group, Inc.

Lasko Group, Inc. notified the NH AG of a phishing attack targeting customers who made online parts purchases. Unauthorized access occurred between Dec 2011 and June 2014. 87 NH residents' names, emails, phone numbers, and credit card details were potentially exposed. Lasko engaged forensic experts and offered 1 year of credit monitoring.

Incident timeline

undetected · 944 days
discovery → filing · 28 days

Dec 1, 2011

Begins

Jul 2, 2014

Discovered

Jul 30, 2014

Filed

vs. sector median

4 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
California State AGJul 30 · first
New Hampshire State AGJul 30 · first · this page

Pattern: first filing Jul 30 (CA), last Aug 4 (MA) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.