Hammer Nutrition
ent_a70b1378242d2ebe6552b2b9
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
516
as filed · State AG MT
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Hammer Nutrition
- Normalized
- hammer nutrition— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- California State AGas victim2019-01-02
Hammer Nutrition notified customers of a data breach affecting payment card data. The intrusion occurred on a third-party website provider's systems between January and October 2018. Attackers placed malware on the servers to access debit/credit card numbers, expiration dates, and CVV codes. No other customer information was accessed. The company engaged a cybersecurity firm to remove malware, installed a web application firewall, and switched to a third-party hosted payment provider.
- Oregon State AGas victim2018-12-21
Hammer Nutrition reported a data breach to the Oregon Attorney General. The breach was reported on 2018-12-21. The breach occurred during 1/1/2018 - 1/1/2018. Notice was sent on 12/14/2018.
- New Hampshire State AGas victim2018-12-18
Hammer Nutrition notified the NH Attorney General of a data breach affecting 295 NH residents. Intrusion occurred Jan-Oct 2018 via a third-party website provider's servers. Malware was placed, granting access to payment card data (numbers, expiration, CVV). The company engaged a cybersecurity firm, removed malware, installed a WAF, and migrated payment processing to a third-party hosted provider.
- Montana State AGas victim2018-12-14
Hammer Nutrition notified Montana residents of a data breach affecting its website provider's systems. Intruders placed malware on servers between January and October 2018, accessing payment card numbers, expiration dates, and CVV codes. The company engaged a cybersecurity firm to remove malware, installed a WAF, and migrated payment processing to a third-party hosted provider.