InvoiceCloud
ent_175675f7a497a111e858df1c
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
2,178
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- InvoiceCloud
- Normalized
- invoicecloud— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- invoicecloudservice.com
Disclosure history (5)newest first
- Massachusetts State AGas victim2025-07-16
InvoiceCloud, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2025-07-16. 85 Massachusetts residents were affected.
- New Hampshire State AGas victim2025-07-16
InvoiceCloud, Inc. identified unauthorized code (likely a skimmer) on customer payment websites on June 16, 2025. The incident affected approximately 20 New Hampshire residents, exposing names, billing addresses, emails, payment card numbers, expiration dates, and CVVs. The company removed the code, engaged forensics, notified law enforcement, and is offering credit monitoring.
- Vermont State AGas victim2025-07-16
InvoiceCloud, a provider of digital payment solutions, identified unauthorized code on systems supporting customer payment websites on June 16, 2025. The incident likely resulted in the scraping of names, addresses, emails, payment card numbers, CVVs, and expiration dates. Social Security numbers and bank account information were not impacted. InvoiceCloud engaged forensic investigators, contained the issue, and is offering one year of credit monitoring and identity restoration services to affected individuals.
- Maine State AGas victim2025-07-16
InvoiceCloud, Inc. reported a security event on June 16, 2025, where unauthorized code was placed on systems supporting customer websites used for payment card transactions. The breach affected 2,178 Maine residents (7 total reported in one field, 2,178 in another; 2,178 used as primary). Data scraped included names, addresses, emails, payment card numbers, CVVs, and expiration dates. InvoiceCloud engaged forensic investigators and offered 12 months of credit monitoring via TransUnion.
- Nebraska State AGas victim2025-07-16
InvoiceCloud, a digital payment solutions provider, notified Nebraska residents of a security event discovered on June 16, 2025. Unauthorized code was placed on systems supporting customer websites used for payment card transactions. The incident exposed names, addresses, emails, payment card numbers (ending in CVV), and expiration dates. InvoiceCloud engaged forensic investigators, deployed additional safeguards, and offered one year of complimentary credit monitoring and identity restoration services via TransUnion.