The California Office of the Attorney General reported that Hudson Envelope of New Jersey Corp. experienced a data breach involving unauthorized code capturing cardholder data on its e-commerce website between June 25, 2020, and January 11, 2021. The breach potentially affected the information of customers who placed orders during this period, including cardholder names, addresses, email, phone numbers, payment card numbers, expiration dates, and security codes. The incident was reported on June 30, 2021.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-542434
TPRM report: https://www.rankiteo.com/company/jam-paper-&-envelope---www-jampaper-com
"id": "jam334080425",
"linkid": "jam-paper-&-envelope---www-jampaper-com",
"type": "Breach",
"date": "6/2020",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Customers who placed orders '
'between June 25, 2020, and '
'January 11, 2021',
'industry': 'E-commerce',
'location': 'New Jersey',
'name': 'Hudson Envelope of New Jersey Corp.',
'type': 'Company'}],
'attack_vector': 'Unauthorized Code Injection',
'data_breach': {'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Cardholder names',
'Addresses',
'Email',
'Phone numbers',
'Payment card numbers',
'Expiration dates',
'Security codes']},
'date_publicly_disclosed': '2021-06-30',
'description': 'Unauthorized code captured cardholder data on Hudson '
"Envelope's e-commerce website between June 25, 2020, and "
'January 11, 2021.',
'impact': {'data_compromised': ['Cardholder names',
'Addresses',
'Email',
'Phone numbers',
'Payment card numbers',
'Expiration dates',
'Security codes'],
'payment_information_risk': 'High',
'systems_affected': 'E-commerce website'},
'initial_access_broker': {'entry_point': 'E-commerce website'},
'references': [{'date_accessed': '2021-06-30',
'source': 'California Office of the Attorney General'}],
'title': 'Hudson Envelope Data Breach',
'type': 'Data Breach'}