Deli Management, Inc.
bd_0ec52a323ee32b9b · schema v1 · pii pii-v1
Full breach record for Deli Management, Inc. →3 incidents on fileDeli Management, Inc. (d/b/a Jason's Deli) experienced a data breach involving RAM-scraping malware deployed on POS terminals starting June 8, 2017. The company discovered the incident on December 22, 2017, when payment processors alerted them to card data for sale on the dark web. Approximately 2 million unique payment card numbers were impacted, including full track data (cardholder name, card number, expiration date, CVV). The breach was contained, and malware disabled. No California locations were affected, but California residents may have been impacted by visiting out-of-state locations.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 8, 2017
Begins
Dec 22, 2017
Discovered
Jan 11, 2018
Filed
vs. sector median
5 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- Washington State AGbd_49b1df9a42b8fc112018-01-11Candidate
- New Hampshire State AGbd_4d7485eb2704057b2018-01-11Verified
- Oregon State AGbd_864fe98185e8613f2018-01-11Verified
- South Carolina State AGbd_7c535625e66137ba2018-01-16 · +5dVerified
Show 1 more filing ↓Show fewer ↑up to 132d gap
- New Hampshire State AGbd_cbf566c95e6d44ca2018-05-23 · +132dVerified
Filing propagation · 6 filings · 5 states
View merged incident ↗Pattern: first filing Jan 11 (WA), last May 23 (NH) — a 132-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.