Avery Products Corporation experienced a ransomware attempt on its payment processing application between July 18, 2024, and December 9, 2024. Malicious software was inserted into the website's cart to scrape payment card information (including CVV and expiration dates) and customer PII. 1,237 Maryland residents were affected. Avery engaged forensic investigators, secured its systems, and provided one year of credit monitoring. The incident status is contained.
Affected (this filing): 1,237