Wilton Brands LLC disclosed a security incident occurring between July 19, 2012, and October 2, 2012, where a malicious user accessed a server hosting wilton.com and copco.com. The incident exposed customer names, addresses, and payment card information (including CVV2/CVC2/CID). Wilton engaged forensic investigators, notified law enforcement, and changed its payment processing system to stop storing full card data. Affected individuals were offered one year of Experian ProtectMyID services.