AeroGrow International Inc
ent_c1ae668b629d62db65a8a4a0
Disclosures
6
State AG · 4 jurisdictions
Incidents
2
filings grouped by incident
Max affected reported
27,488
as filed · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- AeroGrow International Inc
- Normalized
- aerogrow international— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
- Corporate parent
- SCOTTS MIRACLE-GRO CO— per SEC Exhibit 21 filing
Disclosure history (6)newest first
- 🌲Washington State AGas victim2019-04-05
AeroGrow International Inc., a business sector entity reported a malware incident to the Washington Attorney General. The organization became aware of the incident on 2019-03-04 and filed notice on 2019-04-05. 667 Washington residents were affected. 32 days elapsed between awareness and notification. 126 days to identify the breach. 0 days to contain the breach.
- 🐻California State AGas victim2019-04-04
AeroGrow International, Inc. disclosed a data breach affecting payment card information (number, expiration, CVV) submitted via its eCommerce payment page. The malicious code was active between October 29, 2018, and March 4, 2019. AeroGrow removed the code, notified law enforcement, engaged third-party experts, and offered one year of Experian IdentityWorks Plus. No other personal information was compromised.
- 🦫Oregon State AGas victim2019-04-04
AeroGrow International reported a data breach to the Oregon Attorney General. The breach was reported on 2019-04-04. The breach occurred during 10/29/2018 - 3/4/2019. The breach was discovered on 3/4/2019. 27,488 individuals were affected. Notice was sent on 4/4/2019.
- 🦬Montana State AGas victim2019-04-04
AeroGrow International Inc reported a data breach to the Montana Attorney General. The breach was reported on 2019-04-04. The breach occurred on 3/4/2019. 141 Montana residents were affected.
- 🐻California State AGas victim2015-07-09
AeroGrow International, Inc. reported a cybersecurity incident involving malicious software (malware) infiltrating its online servers hosted by a third-party provider. The breach affected customer data, including names, addresses, and payment card details (account number, expiration, CVV), collected between May 13, 2015, and June 10, 2015. The company eradicated the malware, alerted law enforcement, and offered free identity protection services via Experian. This filing serves as a supplemental notification to a prior notice.
- 🐻California State AGas victim2015-06-03
AeroGrow International, Inc. notified California AG that malware infiltrated its online servers between Oct 2014 and Apr 2015. The incident potentially exposed customer names, addresses, and credit card details (account number, expiration, CVV). AeroGrow does not store card data; it was captured in transit. The company hired forensic specialists, eradicated the malware, alerted law enforcement, and offered free identity protection via Experian.