MalwareHospitalityTechnologyHospitalityRansomwareData EncryptedCustomer Data InvolvedPCIFinancial accountIdentity (basic)MediumContained
INTERCONTINENTAL HOTELS GROUP PLC
bd_1a1eea36077c4070 · schema v1 · pii pii-v1
Full breach record for INTERCONTINENTAL HOTELS GROUP PLC →IHG notified guests of malware at franchise hotels in the Americas (Sept-Dec 2016) accessing payment card track data. Malware eradicated by Feb/Mar 2017. Law enforcement notified. No other guest info affected. Count undisclosed.
J jump to incidentP pin to compareR raw source
South Carolina clock✓ SC CRA notice due11 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Incident timeline
undetected · 125 days
discovery → filing · 11 weeks / 75 days
Sep 29, 2016
Begins
Feb 1, 2017
Discovered
Apr 17, 2017
Filed
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed15,757 affectedView incident
Evidence ladder
Leak-site claim
Attacker assertion only. Establishes: claim date, group, alleged victim.
Press / market report
Unlocks: incident narrative, operational impact. Still no compliance clock.
State AG / regulator filingThis record
Unlocks: discovery date, data types, affected count, compliance clock.
SEC 8-K / victim statement
Unlocks: materiality, stated response, full audit trail. Ceiling removed.