Artifact Uprising
ent_48772e3d7bebe54b42a3f780
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
9,740
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Artifact Uprising
- Normalized
- artifact uprising— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- New Hampshire State AGas victim2024-08-23
SPAU Holdings, LLC d/b/a Artifact Uprising LLC notified the NH AG of a data security incident involving a third-party software vulnerability on its website. Unauthorized acquisition of credit card information for purchases made between June 14 and July 12, 2024, was identified. 46 NH residents were affected. Notifications were mailed in August 2024.
- Maine State AGas victim2024-08-23
SPAU Holdings, LLC d/b/a Artifact Uprising LLC disclosed a data breach affecting 9,740 individuals. Unauthorized access occurred between June 14 and July 12, 2024, via a third-party software vulnerability on their website. The incident involved the exfiltration of names, addresses, and credit card details (including CVV and expiration dates). The breach was discovered on July 31, 2024, and consumer notifications were sent on August 23, 2024.
- Montana State AGas victim2024-08-23
Artifact Uprising LLC notified Montana residents of a data security incident involving a third-party software vulnerability on its website. Unauthorized access occurred between June 14 and July 12, 2024, potentially exposing names, addresses, and credit card details (including CVV). The incident was contained on July 12, 2024, and affected individuals were identified by July 31, 2024.
- California State AGas victim2024-08-22
Artifact Uprising LLC disclosed a data security incident involving a third-party software vulnerability affecting its website. The incident occurred between June 14, 2024, and July 12, 2024, and was discovered on July 12, 2024. Potentially compromised data includes names, addresses, and credit card information (number, CVV, expiration date). The company contained and remediated the issue immediately upon detection.