Combat Brands
ent_e20f0e37750a6886f04ac446
Disclosures
10
State AG · 6 jurisdictions
Multi-filing incidents
2
incidents joining 2+ filings here
Max affected reported
37,863
nationwide · State AG OR
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Combat Brands
- Normalized
- combat brands— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (10)newest first
- Washington State AGas victim2017-12-11
Supplemental notice from Combat Brands, LLC regarding a malware incident affecting e-commerce sites. Unauthorized access occurred between July 1, 2015 and October 6, 2017. Malware compromised cardholder data (name, number, CVV). 956 Washington residents affected. Initial discovery was Jan 25, 2017; supplemental discovery of continued compromise was Oct 6, 2017. Notices sent Nov 29, 2017.
- Montana State AGas victim2017-11-29
Combat Brands LLC notified Montana of a cyber-attack between July 1, 2015, and October 6, 2017, affecting customer payment data (names, addresses, card numbers, CVVs) on its e-commerce sites. The company engaged forensic investigators and removed malware. No specific affected individual count was disclosed.
- Massachusetts State AGas victim2017-11-29
Combat Brands, LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-11-29. 412 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2017-11-29
Combat Brands, LLC disclosed a cyber-attack involving malware that potentially compromised debit and credit card data (cardholder name, address, card number, expiration date, CVV) for customers of its websites (fightgear.com, fitness1st.com, ringside.com, combatsports.com) between July 1, 2015, and October 6, 2017. The incident was discovered on October 6, 2017, when unusual code was identified during routine scans. The company engaged third-party forensic investigators and removed the malware.
- Massachusetts State AGas victim2017-06-05
Combat Brands LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-06-05. 1 Massachusetts residents were affected. The report records the breach type as electronic.
- Oregon State AGas victim2017-04-17
Combat Brands, LLC reported a data breach to the Oregon Attorney General. The breach was reported on 2017-04-17. The breach occurred during 7/1/2015 - 2/23/2017. The breach was discovered on 2/23/2017. 37,863 individuals were affected. Notice was sent on 4/14/2017.
- California State AGas victim2017-04-17
Combat Brands, LLC disclosed a cyber-attack involving malware that potentially compromised payment card data (cardholder name, address, card number, expiration date, CVV) for customers of its websites (fightgear.com, fitness1st.com, ringside.com, combatsports.com) between July 1, 2015, and February 23, 2017. The company discovered the breach on February 23, 2017, after investigating unusual activity reported by its credit card processor. Malware was removed, and the FBI is assisting in the investigation.
- Massachusetts State AGas victim2017-04-17
Combat Brands LLC reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-04-17. 1,396 Massachusetts residents were affected. The report records the breach type as electronic.
- Montana State AGas victim2017-04-14
Combat Brands, LLC notified Montana AG of a cyber-attack affecting customer payment data (names, addresses, card numbers, CVVs) from July 2015 to Feb 2017. Malware was used to steal data from multiple websites. Investigation ongoing with FBI and forensic experts. No specific count of affected individuals provided.
- New Hampshire State AGas victim2017-04-14
Combat Brands LLC notified the NH AG of a cyber-attack affecting its e-commerce sites (fightgear.com, fitness1st.com, ringside.com, combatsports.com). Malware compromised debit/credit card data (name, number, expiration, CVV) for 163 NH residents between July 1, 2015, and Feb 23, 2017. The company engaged forensic experts, removed malware, and is cooperating with the FBI.