Hudson Envelope of New Jersey Corp.
ent_6aee5130cae3c381274d7147
Disclosures
10
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
6,517
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Hudson Envelope of New Jersey Corp.
- Normalized
- hudson envelope of new jersey— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- Montana State AGas victim2021-08-19
Hudson Envelope notified customers of unauthorized code on its e-commerce server capturing cardholder data (names, addresses, card numbers, CVVs) between Feb 2 and Jun 18, 2021. The code was removed upon discovery. Hudson implemented enhanced logging and security features.
- Indiana State AGas victim2021-08-18
Hudson Envelope of New Jersey Corp reported a data breach to the Indiana Attorney General. The breach occurred on 2021-02-02 and was reported on 2021-08-18. 41 Indiana residents were affected. 3,327 individuals affected in total.
- New Hampshire State AGas victim2021-08-18
Hudson Envelope of New Jersey Corp. filed a supplemental notification with the New Hampshire Attorney General regarding a security incident on its e-commerce website. Unauthorized code, inserted due to a misconfigured perimeter access control tool, captured cardholder data (names, addresses, payment card numbers, CVV) from customers between February 2, 2021, and June 18, 2021. The incident was discovered on June 30, 2021, and notifications were mailed to 23 New Hampshire residents. Hudson removed the code, corrected the misconfiguration, and implemented enhanced logging and security features.
- Maine State AGas victim2021-08-18
Hudson Envelope of New Jersey Corp. experienced an external system breach (hacking) that occurred from February 2, 2021, to June 18, 2021. The breach was discovered on July 19, 2021. The compromised information includes names or other personal identifiers in combination with financial account numbers or credit/debit card numbers, along with their security codes, access codes, passwords, or PINs. A total of 22 Maine residents were affected. Notification to the affected consumers was sent on August 18, 2021. No identity theft protection services were offered.
- Massachusetts State AGas victim2021-06-30
Hudson Envelope of New Jersey Corp. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2021-06-30. 341 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2021-06-30
Hudson Envelope of New Jersey Corp. experienced an external system breach (hacking) that occurred from June 25, 2020, to January 11, 2021. The breach was discovered on June 30, 2021. The compromised information includes names or other personal identifiers in combination with financial account numbers or credit/debit card numbers and their associated security codes, access codes, passwords, or PINs. A total of 6,517 individuals were affected, including 63 residents of Maine.
- New Hampshire State AGas victim2021-06-30
Hudson Envelope of NJ Corp. notified the New Hampshire Attorney General of a security incident involving its e-commerce website. Unauthorized code capturing cardholder data (names, addresses, payment card numbers, CVV) was present on the web server between June 25, 2020, and January 11, 2021. The company discovered the specific scope on May 20, 2021, identifying 55 affected New Hampshire residents. Notices were sent on June 30, 2021. Remediation included enhanced logging and security features.
- Montana State AGas victim2021-06-30
Hudson Envelope notified customers of unauthorized code inserted into its e-commerce web server designed to capture cardholder data (names, addresses, payment card numbers, CVV). The code was removed upon discovery. Hudson reviewed order data to identify affected individuals and sent notifications. Enhanced logging and security features were implemented.
- California State AGas victim2021-06-30
Hudson Envelope of New Jersey Corp. disclosed that unauthorized code designed to capture cardholder data was present on its e-commerce web server between June 25, 2020, and January 11, 2021. The code could have captured names, addresses, email addresses, phone numbers, payment card numbers, expiration dates, and CVVs. The company discovered the code on January 11, 2021, and immediately removed it. Enhanced logging and security features were implemented.
- Indiana State AGas victim2021-06-30
Hudson Envelope of New Jersey Corp reported a data breach to the Indiana Attorney General. The breach occurred on 2020-06-25 and was reported on 2021-06-30. 97 Indiana residents were affected. 6,517 individuals affected in total.