ICG, America
bd_3cf3bc9f779fb8e7 · schema v1 · pii pii-v1
Full breach record for ICG, America →ICG America, Inc. notified consumers that a cyber-attack targeted its payment processing system between January 2, 2013, and August 2, 2013. The attacker installed a program to decrypt and capture payment card information, including names, addresses, email addresses, card numbers, expiration dates, and CVVs. The company discovered the incident on August 5, 2013, after being advised by a credit card company. It engaged a security firm to investigate and is updating system protections.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 2, 2013
Begins
Aug 5, 2013
Discovered
Sep 24, 2013
Filed
vs. sector median
on median
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_df25d3cc0d62abeb2013-09-24Verified
- Massachusetts State AGbd_df2f2f1eb9dbc77f2013-09-25 · +1dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.