HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSLowContained
Roberts Hawaii, Inc.
bd_1705743d3a4f02d2 · schema v1 · pii pii-v1
Full breach record for Roberts Hawaii, Inc. →Roberts Hawaii, Inc. reported a data breach affecting customers who made purchases on robertshawaii.com and airportwaikikishuttle.com between July 30, 2015, and December 14, 2016. An unauthorized actor accessed the web servers and installed code to copy payment card details, names, addresses, and contact info. Roberts Hawaii engaged a cybersecurity firm, stopped the incident, and removed the malicious code. The breach involves payment card numbers, expiration dates, and security codes.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-66502
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 24, 2017
- Raw hash
- de637e9c3e4a55fb979da498f34e4a10b2b34ddcf378999b22e32bd347be7f99
Reporting entity
- Name
- Roberts Hawaii, Inc.norm: roberts hawaii
Victim entity
- Name
- Roberts Hawaii, Inc.norm: roberts hawaii
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1056 Input Capture
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.