Hard Rock
bd_0caa99fc6482b75e · schema v1 · pii pii-v1
Full breach record for Hard Rock →Hard Rock International notified customers of a security incident involving Sabre Hospitality Solutions, a third-party reservation system provider. An unauthorized party gained access to account credentials, allowing access to unencrypted payment card information (card number, expiration, CVV) and reservation details (name, email, phone, address) for a subset of hotel reservations. Access occurred between August 10, 2016, and March 9, 2017. Sabre notified Hard Rock on June 6, 2017, and engaged a cybersecurity firm and law enforcement.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 10, 2016
Begins
Jun 6, 2017
Discovered
Jul 7, 2017
Filed
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_06652d23cce90b7d2017-07-07Candidate
- Massachusetts State AGbd_4d733d4a2c0688d22017-07-07Verified
- New Hampshire State AGbd_5d01891880c07bb82017-07-07Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.