Social EngineeringPhishingCustomer Data InvolvedIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTIDENTITY_BASICMediumContained
https://www.art.com
bd_1d422c0e2b5fc613 · schema v1 · pii pii-v1
Full breach record for https://www.art.com →Art.com notified South Carolina residents of a data breach where an unknown actor gained unauthorized access to a corporate email account between July 5 and August 26, 2019. The incident involved personal information including SSNs, tax IDs, bank details, and health insurance info. Art.com secured the account, implemented new security protocols, and offered one year of Experian IdentityWorks.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2019/Art.com_.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 11, 2019
- Raw hash
- a1ff3772734ff1633b64907f2d3ddaed0d45b3e7f746fbe031dea9f13ca7d66f
Reporting entity
- Name
- https://www.art.comnorm: https wwwartcom
- Domain
- art.com
Victim entity
- Name
- https://www.art.comnorm: https wwwartcom
- Domain
- art.com
Incident
- Discovered
- Sep 12, 2019
- Materiality determined
- —
- Notification sent
- Oct 11, 2019
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTFINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing Link
- Threat actor
- External
- Initial access
- phishing_link
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.