StockX
ent_927e08a76937dcbad9e92dc5
Disclosures
2
State AG · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
—
no filed count in sample
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- StockX
- Normalized
- stockx— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- California State AGas victim2019-08-09
StockX LLC notified customers of unauthorized access to its cloud environment occurring on or around May 14, 2019, discovered on July 26, 2019. Affected data includes names, email addresses, physical addresses, usernames, hashed passwords, and purchase history. Financial data was not stored by StockX and was not affected. The company engaged third-party forensic experts, reset all passwords, rotated credentials, and locked down its cloud perimeter. Law enforcement was contacted. The investigation remains ongoing.
- Delaware State AGas victim2019-08-08
StockX, an online marketplace, experienced a data breach where an unknown third party gained unauthorized access to customer data from its cloud environment on or around May 14, 2019. The company discovered suspicious activity on July 26, 2019, and engaged forensic experts. Affected data included names, emails, addresses, usernames, hashed passwords, and purchase history. StockX implemented security updates, password resets, and credential rotations, and notified law enforcement. The company offered 12 months of free identity theft protection to affected individuals.