Herff Jones, Inc.
ent_019e5b5bdb17bdc69f713c48983b4438
Disclosures
10
State AG · 10 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
1,091,049
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Herff Jones, Inc.
- Normalized
- herff jones— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 5493001D55RVULYW0R10
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- South Carolina State AGas victim2021-06-21
Herff Jones LLC notified customers of a data breach discovered on April 7, 2021, involving unauthorized access to payment card information and potentially names, addresses, and emails. The company engaged law enforcement and a cybersecurity firm, terminated access, and offered one year of free credit monitoring.
- Washington State AGas victim2021-06-18
Herff Jones, LLC notified the Washington AG of a cybersecurity incident involving unauthorized access to payment card information. The breach affected approximately 17,316 Washington residents. Unauthorized access occurred between August 16, 2020, and April 29, 2021. Herff Jones engaged forensic investigators, notified law enforcement, and offered one year of credit monitoring.
- Hawaii State AGas victim2021-06-18
Herff Jones, LLC reported a data breach to the Hawaii Office of Consumer Protection. The office was notified on 2021/06.18. Breach type: Hackers/Unauthorized Access. 3,373 Hawaii residents were affected. Recovered from the Internet Archive after the notice was removed from the OCP table.
- Maine State AGas victim2021-06-17
Herff Jones, LLC reported an external system breach (hacking) occurring between January 11, 2021, and April 19, 2021, discovered on May 25, 2021. The incident affected approximately 1,091,049 individuals nationwide, including 315 Maine residents. Acquired data included names and financial account or credit/debit card numbers. Herff Jones notified consumers in writing and provided one year of credit monitoring through Equifax.
- Massachusetts State AGas victim2021-06-17
Herff Jones, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-06-17. 13,658 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2021-06-16
Herff Jones, LLC notified customers of unauthorized access to payment card and personal information. The company became aware of suspicious activity on April 7, 2021. The California Attorney General lists the breach date as January 11, 2021. Affected data included payment card information, names, addresses, phone numbers, and email addresses. Herff Jones engaged a cybersecurity firm, notified law enforcement, and offered one year of identity monitoring.
- Oregon State AGas victim2021-06-16
Herff Jones, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2021-06-16. The breach occurred during 1/11/2021 - 4/19/2021. The breach was discovered on 5/25/2021. Notice was sent on 6/15/2021.
- Indiana State AGas victim2021-06-15
Herff Jones, LLC reported a data breach to the Indiana Attorney General. The breach occurred on 2020-12-15 and was reported on 2021-06-15. 46,994 Indiana residents were affected. 1,091,049 individuals affected in total.
- Montana State AGas victim2021-06-15
Herff Jones LLC notified Montana residents of a data breach discovered on April 7, 2021, involving unauthorized access to customer payment card information and PII. The company engaged law enforcement and a cybersecurity firm, terminated access, and offered one year of credit monitoring.
- Delaware State AGas victim2021-06-15
Herff Jones LLC, a student photography retailer, disclosed a data breach on April 7, 2021, involving unauthorized access to customer payment card information. The incident may have also exposed names, addresses, phone numbers, and email addresses. Herff Jones notified law enforcement, engaged a cybersecurity firm, and terminated unauthorized access. Affected customers were offered one year of free credit monitoring and identity theft insurance.