Aeroflow Inc.
ent_019e0cbe1e253731f17dd428314d3eda
Disclosures
5
State AG · HHS OCR · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
4,450
nationwide · HHS OCR NC
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Aeroflow Inc.
- Normalized
- aeroflow— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300VWNR6LRINJRL74
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- New Hampshire State AGas victim2019-05-20
Aeroflow Inc. notified the NH Attorney General of a payment card skimming incident affecting 30 NH residents. Unauthorized code was injected into the checkout page of cheapcpapsupplies.com between Sept 7, 2018 and March 27, 2019, capturing PII and payment data. Aeroflow engaged forensic investigators and enhanced security monitoring.
- Montana State AGas victim2019-05-17
Aeroflow Inc. notified customers that unauthorized code injected into its checkout page between September 6, 2018, and March 27, 2019, exfiltrated payment card data and PII. The company retained a cybersecurity firm for investigation and enhanced security monitoring.
- Massachusetts State AGas victim2019-05-17
Aeroflow reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-05-17. 66 Massachusetts residents were affected. The report records the breach type as electronic.
- NORTH CAROLINAHHS OCRas victim2019-05-16
Aeroflow Inc. (NC, Healthcare Provider) reported to HHS OCR on 2019-05-16 a Hacking/IT Incident affecting 4,450 individuals. PHI was located on a Network Server. The breach involved a cyber-attack exposing names, email addresses, and financial information. Aeroflow notified HHS, affected individuals, and media. The CE implemented additional administrative and technical safeguards; OCR obtained assurances of corrective actions.
- Illinois State AGas victim2019-01-01
AEROFLOW, INC filed a data-breach notice with the Illinois Attorney General during 2019 (case 2019-210). The register records the breach as discovered on September 7, 2019. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.