Capital Brands Holdings, LLC
ent_a89f7dbb14efde062ec5d973
Disclosures
5
State AG · 3 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
88
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Capital Brands Holdings, LLC
- Normalized
- capital brands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- New Hampshire State AGas victim2021-05-03
Capital Brands Holdings notified the New Hampshire Attorney General of a data event affecting 88 NH residents. On Jan 4, 2021, suspicious transactions on its e-commerce platform were detected. On Jan 5, 2021, malicious code injection was discovered. The code could have been used to collect customer name, address, and payment card info. Capital Brands secured the platform, notified law enforcement, and provided 12 months of credit monitoring via Experian to affected individuals.
- Montana State AGas victim2021-04-27
Capital Brands Distribution, LLC notified Montana residents of a data breach where malicious code was injected into its e-commerce platform on January 4, 2021. The incident potentially exposed customer names, addresses, and payment card information. The company engaged law enforcement and offered 12 months of credit monitoring.
- New Hampshire State AGas victim2020-04-30
Capital Brands, LLC notified the NH AG of a security incident affecting 11 NH residents. Unauthorized access to nutribullet.com checkout between Feb 19 and Mar 17, 2020, allowed collection of PII and payment card data. Capital corrected access, engaged forensic investigators, enhanced security, and mailed notices on April 29, 2020.
- Massachusetts State AGas victim2020-04-29
Capital Brands Distibution, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2020-04-29. 83 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas reporting2020-04-29
NutriBullet, LLC notified customers of a security incident where an unauthorized user modified the checkout page of www.nutribullet.com to collect customer information, including names, addresses, and payment card details (number, expiration, CVV). The incident affected orders placed between February 19, 2020, and March 17, 2020. NutriBullet engaged forensic investigators and enhanced website security.