TwoBirch
ent_66a994850e1a0c4dbd0c8230
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
798
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- TwoBirch
- Normalized
- twobirch— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- twobirch.com
Disclosure history (4)newest first
- New Hampshire State AGas victim2021-06-01
TwoBirch notified the NH AG of a cyber-attack compromising payment card data (name, address, card number, CVV) for 9 NH residents. Suspicious activity was discovered on Jan 8, 2021. The compromise occurred between Feb 18, 2020, and Jan 18, 2021. TwoBirch engaged forensic specialists, implemented additional security safeguards, and notified card brands and regulators.
- Massachusetts State AGas victim2021-05-26
TwoBirch reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-05-26. 12 Massachusetts residents were affected. The report records the breach type as electronic.
- Indiana State AGas victim2021-05-26
TwoBirch reported a data breach to the Indiana Attorney General. The breach occurred on 2020-02-18 and was reported on 2021-05-26. 22 Indiana residents were affected. 798 individuals affected in total.
- Maine State AGas victim2021-05-26
TwoBirch, a point-of-sale vendor, disclosed a data breach affecting 798 individuals, including 4 Maine residents. The breach, which occurred between February 18, 2020, and January 18, 2021, was discovered on January 8, 2021. The incident was described as an external system breach involving malicious code. The compromised information includes names in combination with financial account numbers or credit/debit card numbers and their associated security codes or PINs. Affected individuals were notified in writing on May 26, 2021. Identity theft protection services were not offered.