Nashbar Direct, Inc.
bd_fa19758be55bd21d · schema v1 · pii pii-v1
Full breach record for Nashbar Direct, Inc. →Nashbar Direct, Inc. notified the New Hampshire Attorney General of a data breach affecting 1,307 state residents. Unauthorized access to previous website servers occurred starting in December 2008 and was confirmed on May 18, 2009. The incident exposed customer names, addresses, emails, passwords, and credit/debit card information. Nashbar took the site offline, migrated to a new host, engaged forensic experts, and notified payment networks and federal law enforcement.
J jump to incidentP pin to compareR raw source
Incident timeline
Dec 1, 2008
Begins
May 18, 2009
Discovered
Jul 6, 2009
Filed
vs. sector median
on median
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.