OXO International Ltd.
ent_9273860a2927cd913964e415
Disclosures
3
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
58
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- OXO International Ltd.
- Normalized
- oxo international— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- Helen Of Troy Ltd— per SEC Exhibit 21 filing
Disclosure history (3)newest first
- California State AGas victim2019-01-03
OXO International, Ltd. disclosed that unauthorized code on its e-commerce website may have compromised customer personal information, including names, addresses, and credit card details. The incident affected orders placed between June 2017 and October 2018. OXO confirmed the breach on December 17, 2018, after forensic investigation. The company removed the malicious code, conducted penetration testing, and offered one year of identity monitoring through Kroll.
- Montana State AGas victim2018-12-28
OXO International Ltd. notified Montana residents of a data breach involving unauthorized access to its e-commerce website. The incident, discovered Dec 17, 2018, compromised customer names, addresses, and credit card info entered between June 2017 and Oct 2018. OXO engaged forensic investigators, removed malicious code, and offered one year of Kroll identity monitoring.
- New Hampshire State AGas victim2018-12-28
OXO International Ltd. filed a supplemental notice with the New Hampshire Attorney General regarding a Magecart injection incident. The breach exposed customer names, billing/shipping addresses, and credit/debit card information. The filing reports 58 affected New Hampshire residents. OXO removed the malicious code, reissued credentials, and provided one year of credit monitoring.