Frontier Natural Products
ent_aca3c67bae2c937598b5d429
Disclosures
4
State AG · 3 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
311
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Frontier Natural Products
- Normalized
- frontier natural products— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- Montana State AGas reporting2017-09-11
Frontier Cooperative notified customers of a data security incident affecting orders placed between May 12 and August 22, 2017. Unauthorized access may have exposed names, addresses, and payment card numbers. The company engaged Kroll to provide one year of complimentary identity monitoring services to affected individuals.
- New Hampshire State AGas victim2017-09-11
Frontier Natural Products Co-op notified 14 New Hampshire residents of a criminal cyber-attack on its e-commerce sites between May 12 and August 22, 2017. Malicious code captured customer names, addresses, and credit card numbers. Frontier removed the code, notified its payment processor, and offered one year of credit monitoring via Kroll.
- Massachusetts State AGas victim2013-03-11
Frontier Natural Products Co-op reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2013-03-11. 311 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2013-03-06
Frontier Natural Products Co-op notified the NH AG of a security incident affecting 101 NH residents. Unauthorized access occurred from Sept 14, 2012 to Jan 31, 2013, when a malicious file was added to a server hosting its websites. The attacker intercepted personal info (names, addresses, usernames, passwords, payment card details including CVV) during user purchases. Frontier engaged forensic investigators, removed the malicious file, patched the application, and notified law enforcement. Affected individuals were offered 12 months of identity monitoring.