HackingSupply Chain (3P Vendor)Customer Data InvolvedFINANCIAL_ACCOUNTIDENTITY_BASICLowContained
AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.
bd_252e4e607ca16deb · schema v1 · pii pii-v1
Full breach record for AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC. →American Express notified customers that a third-party service provider used by merchants experienced unauthorized access. Card account numbers, names, and expiration dates may have been compromised. American Express systems were not directly breached. The incident occurred on November 20, 2014. American Express is monitoring accounts for fraud.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_27692d6a021d4403California State AGfiled 2016-01-27(1d gap)Candidate
- bd_996f71bb94d78f5bCalifornia State AGfiled 2016-01-28(2d gap)Candidate
- bd_0c70f0408fb18e9cCalifornia State AGfiled 2016-01-08(18d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-59799
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 26, 2016
- Raw hash
- 14a3dd211774b66af25dc283dd71c3983ae77c49035497ba2c4e598eb592e580
Reporting entity
- Name
- AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.norm: american express travel related
Victim entity
- Name
- AMERICAN EXPRESS TRAVEL RELATED SERVICES COMPANY, INC.norm: american express travel related
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- Threat actor
- External
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.