BARNES & NOBLE BOOKSELLERS, INC.
ent_019ed26f5d1c313478c33d574eac09d1
Disclosures
4
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
14
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- BARNES & NOBLE BOOKSELLERS, INC.
- Normalized
- barnes noble booksellers— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900CJBTJFM4EMPT19
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- California State AGas victim2012-11-02
Barnes & Noble Booksellers, Inc. experienced criminal tampering with 63 PIN pad devices across its US retail stores. American Express, the card issuer, notified affected cardholders that names, account numbers, and expiration dates may have been accessed. The incident was contained by September 14, 2012, when all affected devices were powered down. No Social Security numbers were impacted.
- Massachusetts State AGas victim2012-10-25
Barnes & Noble Booksellers, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2012-10-25. 14 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2012-10-24
Barnes & Noble detected physical tampering with PIN pad devices in 63 retail stores across 9 states (CA, CT, FL, NJ, NY, IL, MA, PA, RI). Criminals planted bugs in the devices to capture credit/debit card numbers, names, and PINs. The company discontinued use of all PIN pads nationwide, notified federal law enforcement, and inspected all devices. No specific count of affected individuals was disclosed, but the incident affected fewer than 1% of pin pads. The member database and online systems were not compromised.
- New Hampshire State AGas victim2012-10-24
Barnes & Noble Booksellers, Inc. issued a breach notification to residents of New Hampshire, North Carolina, Maryland, and Massachusetts regarding unauthorized access to customer data. The notification includes FTC identity theft resources and state-specific AG contact information.