HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedFINANCIAL_ACCOUNTIDENTITY_BASICLowContained
ROLAND DGA CORPORATION
bd_fe1b1588e4af7b70 · schema v1 · pii pii-v1
Full breach record for ROLAND DGA CORPORATION →Roland DGA Corporation notified New Hampshire AG of a security breach affecting its e-commerce store. Unauthorized code was present from July 26, 2023, to January 17, 2024, potentially capturing credit card transaction data. Approximately 8 NH residents were impacted. Roland DGA offered credit monitoring and identity protection services.
This filing is one of 5 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- bd_8f33f77b85f1b5d8Maine State AGfiled 2024-07-24Candidate
- bd_2cc4547461cd12f1Indiana State AGfiled 2024-07-19(5d gap)Verified
- bd_3c311867ae4848c5Montana State AGfiled 2024-07-19(5d gap)Candidate
- bd_86dca0a9853e9566Vermont State AGfiled 2024-07-19(5d gap)Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/roland-dga-20240724.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 24, 2024
- Raw hash
- d5b4c29f97d4e883c1d6e08da95842d733a44b1d583ddd4c5801bdec1225a9ea
Reporting entity
- Name
- ROLAND DGA CORPORATIONnorm: roland dga
Victim entity
- Name
- ROLAND DGA CORPORATIONnorm: roland dga
Incident
- Discovered
- Jan 16, 2024
- Materiality determined
- Apr 22, 2024
- Notification sent
- Jul 19, 2024
- Affected individuals
- 8
- Data types
- FINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Misconfiguration
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1074 Data Staged
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 27 weeks(190 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.