ACTIVEOutdoors
ent_1f5a19c5214c0e8c68459688
Disclosures
6
State AG · 6 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
4,210,850
as filed · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- ACTIVEOutdoors
- Normalized
- activeoutdoors— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (6)newest first
- 🐻California State AGas victim2016-09-19
ACTIVEOutdoors disclosed unauthorized access to its online hunting and fishing licensing applications in Idaho, Oregon, and Washington. The company became aware of the incident on August 22, 2016. Affected data included names, addresses, dates of birth, driver's license numbers, and Social Security numbers for accounts created prior to 2006/2007. No financial data was involved. The company engaged a cybersecurity firm, coordinated with state agencies, and offered two years of identity protection services to affected individuals.
- 🦫Oregon State AGas victim2016-09-19
ACTIVEOutdoors reported a data breach to the Oregon Attorney General. The breach was reported on 2016-09-19. The breach was discovered on 8/22/2016. 4,210,850 individuals were affected. Notice was sent on 9/19/2016.
- 🦬Montana State AGas victim2016-09-19
ACTIVEOutdoors reported a data breach to the Montana Attorney General. The breach was reported on 2016-09-19. The breach occurred on 8/22/2016. 40,370 Montana residents were affected.
- ⛰️New Hampshire State AGas victim2016-09-19
ACTIVEOutdoors, provider of online state hunting and fishing license applications, notified New Hampshire AG on September 19, 2016, of unauthorized access to its Affected Applications discovered on August 22, 2016. The incident potentially exposed personal information of 1,282 New Hampshire residents, including names, addresses, DOBs, and driver's license numbers, with 304 residents having full SSNs exposed. The threat was isolated to accounts created prior to July 2006/2007. ACTIVEOutdoors engaged a cybersecurity firm, secured the applications, and provided 24 months of identity repair and credit monitoring services to affected individuals.
- 🌲Washington State AGas victim2016-09-19
ACTIVEOutdoors, a government sector entity reported a unauthorized access incident to the Washington Attorney General. The organization became aware of the incident on 2016-08-22 and filed notice on 2016-09-19. 1,449,645 Washington residents were affected. 28 days elapsed between awareness and notification.
- 🌺Hawaii State AGas victim2016-08-22
Active Outdoors reported a data breach to the Hawaii Office of Consumer Protection. The office was notified on 2016/08.22. Breach type: Hackers/Unauthorized Access. 3,984 Hawaii residents were affected. Recovered from the Internet Archive after the notice was removed from the OCP table.