HackingData ExfiltratedCustomer Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICMediumContained
Retail Data
bd_097ac20ce961f9e9 · schema v1 · pii pii-v1
Full breach record for Retail Data →Retail Data reported that on June 22, 2024, an unauthorized party gained limited access to parts of its network. Forensic investigation confirmed that files containing personal information, including Social Security numbers, were accessed and acquired on that date. The company engaged external cybersecurity professionals and is offering identity theft protection services to affected individuals.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_4a34c8b5f778fc34Maine State AGfiled 2024-09-06Verified
- bd_5d2a14eb5f07c9d8Vermont State AGfiled 2024-09-06Verified
- bd_d496a12ffce6f4b0Indiana State AGfiled 2024-09-06Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-591344
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 6, 2024
- Raw hash
- 8fcd5b81c9e0616cff0601d01522a67a2ad8e6a6f345769306ed5186c61b66ed
Reporting entity
- Name
- Retail Datanorm: retail data
Victim entity
- Name
- Retail Datanorm: retail data
Incident
- Discovered
- Jun 22, 2024
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
Compliance
- Time to disclose
- 11 weeks(76 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.