HackingStolen CredentialsData ExfiltratedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
CORE Cashless
bd_10fca999b6ebbd83 · schema v1 · pii pii-v1
Full breach record for CORE Cashless →CORE Cashless, LLC reported a data security incident affecting California residents. An unauthorized individual accessed the company's payment processing environment between January 29, 2022, and July 30, 2022. Compromised data included names, addresses, and payment card information. The company engaged cybersecurity counsel and provided 12 months of complimentary identity monitoring services via Kroll.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_471274c4c760e42cDelaware State AGfiled 2022-07-28(47d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-557176
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 13, 2022
- Raw hash
- ede8fd161ec1134048547d2635be0bf417fedd49872c5122a0b35f9fa8e73cee
Reporting entity
- Name
- CORE Cashlessnorm: core cashless
Victim entity
- Name
- CORE Cashlessnorm: core cashless
Incident
- Discovered
- Jul 28, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 7 weeks(47 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.