UnknownHigh
macys.com
bd_49ff44d3a912f3e2 · schema v1 · pii pii-v1
Full breach record for macys.com →macys.com reported a data breach to the Oregon Attorney General. The breach was reported on 2019-11-15. The breach occurred during 10/7/2019 - 10/15/2019. The breach was discovered on 10/15/2019. 135,152 individuals were affected. Notice was sent on 11/14/2019.
Oregon clock✓ OR AG ≤45d4 weeks discovery → filing
⚠ AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_31b96199e68e3d55California State AGfiled 2019-11-15Verified
- bd_86b831fb90eeeebfDelaware State AGfiled 2019-11-14(1d gap)Verified
Source provenance
- Source URL
- https://justice.oregon.gov/consumer/DataBreach/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 15, 2019
- Raw hash
- 1dfe4ee9d7f57d04abeb2cb0d45bb3e70a147043a0d2a6734b45e25a033ad092
Reporting entity
- Name
- macys.comnorm: macyscom
- Domain
- macys.com
Victim entity
- Name
- macys.comnorm: macyscom
- Domain
- macys.com
Incident
- Discovered
- Oct 15, 2019
- Materiality determined
- —
- Notification sent
- Nov 14, 2019
- Affected individuals
- 135,152
- Data types
- —
- Attack vector
- Unknown
- Threat actor
- External
Compliance
- Time to disclose
- 4 weeks(31 days from discovery to filing)
- Compliance flags
- OR AG ≤45d
- Discovery-date grounding
- AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.