HackingStolen CredentialsSupply Chain (3P Vendor)Data ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
Gemstone
bd_445961a5c27104b7 · schema v1 · pii pii-v1
Full breach record for Gemstone →Gemstone Vineyards, a California-based winery, was notified by third-party provider Missing Link Networks, Inc. on May 27, 2015, of a security incident occurring between April 1 and April 30, 2015. The breach potentially exposed customer names, credit/debit card numbers, payment addresses, passwords, and dates of birth. The breach has been contained, and Missing Link has notified card companies and enhanced security. Gemstone Vineyards is notifying affected customers.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-56445
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 18, 2015
- Raw hash
- 6d4024077cdd7c616cbb023d9f6ca20e2b78f24e96037754e2ce16a33c08e464
Reporting entity
- Name
- Gemstonenorm: gemstone
- Domain
- gemstonevineyard.com
- Industry
- retail_consumer
Victim entity
- Name
- Gemstonenorm: gemstone
- Domain
- gemstonevineyard.com
- Industry
- retail_consumer
Incident
- Discovered
- May 27, 2015
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Third party
- via Missing Link Networks, Inc.
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 22 days(22 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.