HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
ICG International
bd_3cf3bc9f779fb8e7 · schema v1 · pii pii-v1
Full breach record for ICG International →ICG America, Inc. notified California regulators of a payment card breach affecting data from January 2, 2013, to August 2, 2013. An attacker installed a program to capture payment card information. The scope of actual data theft is undetermined, but names, addresses, and card details may have been accessed.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-42754
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 24, 2013
- Raw hash
- 74663dd1b2f71a082d236635ed7f6788f81780530012db4ee35ed087a08be5a9
Reporting entity
- Name
- ICG America, Inc.norm: icg america
Victim entity
- Name
- ICG Internationalnorm: icg international
- Domain
- icgintl.com
Incident
- Discovered
- Aug 5, 2013
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1056 Input Capture
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 7 weeks(50 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.