Sark Technologies LLC
ent_5030be3da7b52faa97f3c222
Disclosures
3
State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
43,250
as filed · State AG CA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Sark Technologies LLC
- Normalized
- sark technologies— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- 🐻California State AGas victim2019-08-02
Sark Technologies LLC (operating SuperINN.com) disclosed a data breach affecting approximately 43,250 individuals, including 2,882 California residents. Attackers exploited a vulnerability in an image upload function to upload PHP web shells starting September 23, 2018, and later used SQL injection to exfiltrate encrypted cardholder data, names, and addresses through July 16, 2019. The vendor detected the incident on May 26, 2019, removed the shells, patched the vulnerabilities, rotated encryption keys, and engaged forensic investigators and penetration testers.
- 🦬Montana State AGas victim2019-08-01
Sark Technologies LLC reported a data breach to the Montana Attorney General. The breach was reported on 2019-08-01. The breach occurred from 9/28/2019 to 7/16/2019. 180 Montana residents were affected.
- 🌲Washington State AGas victim2019-07-26
Sark Technologies LLC, a business sector entity reported a malware incident to the Washington Attorney General. The organization became aware of the incident on 2019-05-26 and filed notice on 2019-07-26. 762 Washington residents were affected. 61 days elapsed between awareness and notification. 245 days to identify the breach. 51 days to contain the breach.