HackingSupply Chain (3P Vendor)Customer Data InvolvedFINANCIAL_ACCOUNTIDENTITY_BASICLowContained
Mission Linen Supply Company
bd_28433580056b9541 · schema v1 · pii pii-v1
Full breach record for Mission Linen Supply Company →Mission Linen Supply Company notified customers of a security incident involving a third-party vendor hosting its web stores. On June 29, 2012, the company learned of unauthorized credit card charges. The vendor stored personally identifiable information, including credit/debit card numbers, expiration dates, and names. The company engaged law enforcement, notified banks, and arranged for one year of free credit monitoring via Equifax. The vendor ceased storing credit card data.
California clockDiscovered Jun 29, 2012 → Notified Jul 20, 201221d ✓ CA 60-day OK25 days discovery → filing
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-32356
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 24, 2012
- Raw hash
- ca55c47eb50b09206320276dd70aa63c03949cbdd2e1d40fca4bfa585c6caa41
Reporting entity
- Name
- Mission Linen Supply Companynorm: mission linen supply
- Domain
- missionlinen.com
Victim entity
- Name
- Mission Linen Supply Companynorm: mission linen supply
- Domain
- missionlinen.com
Incident
- Discovered
- Jun 29, 2012
- Materiality determined
- —
- Notification sent
- Jul 20, 2012
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified local law enforcement, including the U.S. Secret Service
- Third party
- via Third party vendor
- Initial access
- supply_chain
Compliance
- Time to disclose
- 25 days(25 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 21d
- Discovery-date grounding
- letter-groundedThe discovery date is the detection date narrated in the notification letter — the defensible tier.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: Jun 29, 2012→ Notified: Jul 20, 201221d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.