Mrs Prindables reported a data breach involving its third-party payment processor, Aptos Inc. Unauthorized actors accessed and placed malware on Aptos' platform, affecting 40 online retailers. The breach occurred between February 2016 and December 2016, with discovery in November 2016. Exposed data included names, emails, addresses, phone numbers, and payment card numbers (excluding CVV). Mrs Prindables engaged a cybersecurity firm, updated security controls, and cooperated with federal law enforcement.