HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICCREDENTIALSLowContained
ROMWE
bd_41b3a67cdba01baa · schema v1 · pii pii-v1
Full breach record for ROMWE →ROMWE notified customers that usernames and passwords were stolen from its network in July 2018 and appeared on the dark web in September 2020. The breach exposed names, emails, and phone numbers. ROMWE forced password resets and offered 12 months of identity theft protection services. The incident affects customers across multiple US states.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_b53034c3920d7e41Delaware State AGfiled 2020-12-30Verified
Source provenance
- Source URL
- https://consumer.sc.gov/sites/consumer/files/Documents/Business%20Resources%20Laws/Related%20Laws/Breaches/2020/Romwe.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 30, 2020
- Raw hash
- a5a6d0510ab06dc24b50644b2e97c559cb9db28b5b75453c431bd679a0b75f2f
Reporting entity
- Name
- ROMWEnorm: romwe
- Domain
- romwe.com
Victim entity
- Name
- ROMWEnorm: romwe
- Domain
- romwe.com
Incident
- Discovered
- Sep 7, 2020
- Materiality determined
- —
- Notification sent
- Sep 7, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1566.002 Spearphishing Link
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 16 weeks(114 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.