COMBE INCORPORATED
ent_019e6276d2b6afce12d7236d0631c117
Disclosures
8
State AG · 5 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
6,504
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- COMBE INCORPORATED
- Normalized
- combe— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300GSBDWT2FCIXQ24
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (8)newest first
- New Hampshire State AGas victim2020-08-28
Combe, Inc. notified the New Hampshire Attorney General of a data security incident affecting 18 state residents. An unauthorized third party injected malicious code into the checkout pages of justformen.com and vagisil.com between March 2 and April 13, 2020, collecting names, addresses, emails, and credit/debit card info. Combe removed the code, engaged forensic investigators, patched its Magento platform, and notified affected individuals.
- Massachusetts State AGas victim2020-08-26
Combe, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-08-26. 189 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2020-08-26
Combe, Inc. notified consumers of a checkout skimming incident on its website from March 2 to April 10, 2020. Unauthorized code collected names, addresses, emails, and credit card details. Combe removed the code, engaged forensic investigators, and alerted credit card companies. No SSNs were impacted.
- California State AGas victim2020-08-26
Combe Incorporated experienced a data breach from March 2, 2020, to April 10, 2020, when an unauthorized third party placed malicious code on the checkout page of its website. The code collected personal information, including names, email addresses, physical addresses, and credit card information, from customers who made purchases during that period. Social Security Numbers were not impacted. Combe removed the code, engaged forensic investigators, and notified credit card companies.
- Indiana State AGas victim2020-08-26
Combe Incorporated reported a data breach to the Indiana Attorney General. The breach occurred on 2020-03-02 and was reported on 2020-08-26. 95 Indiana residents were affected. 6,504 individuals affected in total.
- New Hampshire State AGas victim2019-03-01
Combe Incorporated notified the NH Attorney General of a security incident on its vendor-hosted website (justformen.com). Unauthorized access occurred Jan 15-22, 2019, exposing customer PII and payment card data (including CVV). 2 NH residents affected. Combe engaged a security firm, enhanced website security, and notified affected customers.
- Massachusetts State AGas victim2019-02-28
Combe Incorporated reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-02-28. 6 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2019-02-28
Combe Incorporated notified Montana AG of a breach at www.justformen.com. Unauthorized access occurred Jan 15-22, 2019, exposing customer names, addresses, and full payment card details (number, expiry, CVV). Combe detected suspicious activity on Jan 20, 2019, engaged a security firm, enhanced website security, and notified card networks. No specific count of affected individuals was provided in this notice.