Avery Products Corporation
ent_a9b972f7e5bf51b632635f16
Disclosures
12
State AG · 9 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
61,192
nationwide · State AG IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Avery Products Corporation
- Normalized
- avery products— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (12)newest first
- 🦀Maryland State AGas victim2025-11-13
Avery Products Corporation experienced a ransomware attempt on its payment processing application between July 18, 2024, and December 9, 2024. Malicious software was inserted into the website's cart to scrape payment card information (including CVV and expiration dates) and customer PII. 1,237 Maryland residents were affected. Avery engaged forensic investigators, secured its systems, and provided one year of credit monitoring. The incident status is contained.
- 🐻California State AGas victim2025-02-11
Avery Products Corporation experienced a ransomware attack discovered on December 9, 2024. An unauthorized actor inserted malicious software to scrape credit card information from avery.com between July 18, 2024, and January 5, 2025. Affected data includes names, addresses, email, phone, payment card numbers, CVV, expiration dates, and purchase amounts. The company engaged forensic experts, reported to regulators, and is offering 12 months of credit monitoring.
- 🦬Montana State AGas victim2025-02-07
Avery Products Corporation reported a data breach to the Montana Attorney General. The breach was reported on 2025-02-07. The breach occurred from 07/18/2024 to 01/05/2025. 308 Montana residents were affected.
- 🦞Maine State AGas victim2025-02-06
Avery Products Corporation reported a data breach affecting 523 Maine residents. The breach, which was discovered on January 4, 2025, occurred between July 18, 2024, and January 5, 2025. The company described the incident as an external system breach or hacking. Affected individuals were notified on January 16, 2025, and offered 12 months of credit monitoring services through Cyber Scout.
- ⛰️New Hampshire State AGas victim2025-02-05
Avery Products Corporation issued a supplemental notice to the NH AG regarding a ransomware attempt and malware incident affecting customer payment card data on avery.com. The incident occurred between July 18, 2024, and January 5, 2025. Malware embedded in the website cart scraped payment information. 400 New Hampshire residents were affected. Avery engaged forensic investigators and provided credit monitoring.
- 🍁Vermont State AGas victim2025-01-29
Avery Products Corporation notified consumers of a ransomware attack discovered on December 9, 2024. Between July 18, 2024, and January 5, 2025, an unauthorized actor scraped credit card information, names, addresses, and CVVs from avery.com. The incident was reported to state regulators and AGs. Affected individuals are offered 12 months of credit monitoring.
- 🦫Oregon State AGas victim2025-01-16
Avery Products Corporation reported a data breach to the Oregon Attorney General. The breach was reported on 2025-01-16. The breach occurred during 7/18/2024 - 12/9/2024. The breach was discovered on 12/9/2024. 61,100 individuals were affected. Notice was sent on 1/16/2025.
- 🏎️Indiana State AGas victim2025-01-16
Avery Products Corporation reported a data breach to the Indiana Attorney General. The breach occurred on 2024-07-18 and was reported on 2025-01-16. 1,195 Indiana residents were affected. 61,192 individuals affected in total.
- 🐻California State AGas victim2025-01-16
Avery Products Corporation experienced a ransomware attack affecting its website avery.com between July 18, 2024, and December 9, 2024. The company became aware of the incident on December 9, 2024. An unauthorized actor inserted malicious software to scrape credit card information, including CVV numbers and expiration dates, as well as names, addresses, and contact details. While initial evidence did not show exfiltration, subsequent reports of fraudulent charges suggest data may have been acquired. Avery engaged forensic experts, notified regulators, and is offering 12 months of credit monitoring to affected individuals.
- ⛰️New Hampshire State AGas victim2025-01-13
Avery Products Corporation notified the NH AG of a ransomware attempt on its payment processing application between July 18 and Dec 9, 2024. Malicious software scraped payment card info from avery.com. 372 NH residents affected. Avery engaged forensic investigators, secured systems, and offered 12 months of credit monitoring.
- 🦞Maine State AGas victim2025-01-13
Avery Products Corporation reported an external system breach that occurred from July 18, 2024, to December 9, 2024. The breach was discovered on December 9, 2024, and affected 460 Maine residents. The company is offering 12 months of credit monitoring services through CyberScout to those affected.
- 🌲Washington State AGas victim2025-01-10
Avery Products Corporation, a business sector entity reported a ransomware incident to the Washington Attorney General. The organization became aware of the incident on 2024-12-09 and filed notice on 2025-01-10. 1,724 Washington residents were affected. 32 days elapsed between awareness and notification. 144 days to identify the breach. 0 days to contain the breach.