STURM, RUGER & COMPANY, INC.
ent_019e5ae9964ea217ec4d3a85cda3f38e
Disclosures
11
State AG · 10 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
167,963
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- STURM, RUGER & COMPANY, INC.
- Normalized
- sturm ruger— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 529900DV1BWFJSHFO847
- SEC EDGAR CIK
- 0000095029
- Domain
- None on record
Disclosure history (11)newest first
- New Hampshire State AGas victim2022-08-19
Sturm, Ruger & Company, Inc. notified the NH AG of a data breach affecting ~1,639 NH residents. Third-party vendor Freestyle Solutions experienced malware on its server hosting ShopRuger.com from Sept 2020 to Feb 2022. Malware captured checkout data including names, addresses, and full payment card details. Ruger engaged Verizon for investigation, notified law enforcement, and offered 12 months of identity protection services.
- Massachusetts State AGas victim2022-08-18
Sturm, Ruger & Company, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2022-08-18. 2,179 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2022-08-18
Sturm Ruger & Company, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2020-09-18 and was reported on 2022-08-18. 4,385 Indiana residents were affected. 167,963 individuals affected in total.
- South Carolina State AGas victim2022-08-18
Sturm, Ruger & Company, Inc. notified customers that its third-party vendor, Freestyle Solutions, experienced a data breach involving malware on the server hosting ShopRuger.com. The malware operated from September 18, 2020, to February 3, 2022, capturing customer payment card information, names, and addresses. Sturm Ruger engaged Verizon for investigation and offered identity theft protection services.
- Washington State AGas victim2022-08-18
Sturm, Ruger & Company, Inc. notified the Washington AG of a data breach affecting 4,866 residents. Third-party vendor Freestyle Solutions experienced a malware incident on its server hosting ShopRuger.com from Sept 2020 to Feb 2022. Malware captured checkout data including names, addresses, and payment card details. Ruger notified customers on Aug 18, 2022, and offered 12 months of identity protection.
- Delaware State AGas victim2022-08-17
Sturm, Ruger and Company, Inc reported a data breach to the Delaware Attorney General. The breach occurred on 2020-09-18. It was discovered on 2022-08-02. Notice was filed on 2022-08-17. 568 Delaware residents were affected. 167,963 individuals affected in total. Information involved: authentication, financial account.
- California State AGas victim2022-08-17
Sturm, Ruger & Company, Inc. notified customers of a data breach involving its third-party vendor, Freestyle Solutions, which hosted the ShopRuger.com website. Malware on the Freestyle server captured payment card information (card number, expiration date, security code) and basic identity data (name, address, email) from September 18, 2020, to February 3, 2022. Freestyle detected the malware and notified Ruger on August 2, 2022. Ruger offered identity theft protection services.
- Maine State AGas victim2022-08-17
Sturm, Ruger & Company, Inc. reported a data breach caused by malware that affected 167,963 individuals. The breach occurred between September 18, 2020, and February 3, 2022, and was discovered on August 2, 2022. The compromised information included names and financial account or credit/debit card numbers with their corresponding access codes. The company provided written notification to affected individuals on August 18, 2022, and offered 12 months of identity theft protection services.
- Oregon State AGas victim2022-08-17
Sturm, Ruger & Company, Inc reported a data breach to the Oregon Attorney General. The breach was reported on 2022-08-17. The breach occurred during 1/1/0001. 167,963 individuals were affected.
- Montana State AGas reporting2022-08-17
Sturm, Ruger & Company, Inc. notified customers that its third-party vendor, Freestyle Solutions, experienced a data breach involving malware on the server hosting ShopRuger.com. The malware, active from Sept 2020 to Feb 2022, captured customer payment card information and personal details. Verizon was engaged for investigation. Identity theft protection services were offered.
- Delaware State AGas victim2022-08-02
Sturm, Ruger & Company, Inc. notified customers that its third-party payment vendor, Freestyle Solutions, experienced a data breach. Malware on the Freestyle server hosting ShopRuger.com captured customer payment card data, names, and addresses between September 2020 and February 2022. Ruger engaged Verizon for forensics, notified law enforcement, and offered 12 months of identity protection services. No evidence of improper use was found.
Supply-chain cascadesreviewed and confirmed
- STURM, RUGER & COMPANY, INC.’s filing is one of at least 12 in the FreeStyle Solutions supply-chain incident (2022).