MalwareRansomwareData ExfiltratedCustomer Data InvolvedTargetedFINANCIAL_ACCOUNTPIILowContained
HEI Hotels & Resorts
bd_4c86346afddc039d · schema v1 · pii pii-v1
Full breach record for HEI Hotels & Resorts →HEI Hotels & Resorts notified the New Hampshire Attorney General of a security incident involving point-of-sale malware installed on payment processing systems at multiple Marriott, Hyatt, and Westin properties. The malware captured payment card data (account number, expiration, verification code) for transactions between December 2, 2015, and June 21, 2016. HEI engaged forensic experts, disabled the malware, and separated payment processing from its network. The exact number of affected individuals is unknown.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_0f26bbce75cef0d1Montana State AGfiled 2016-08-12Candidate
- bd_de8180f36bdf0951California State AGfiled 2016-08-12Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/hei-hotels-resorts-20160812.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 12, 2016
- Raw hash
- 85ae0eed18468f30d3cf56f8d75fe18d8cc77f39274f3030f6bdba2ef727a9a2
Reporting entity
- Name
- HEI Hotels & Resortsnorm: hei hotels resorts
Victim entity
- Name
- HEI Hotels & Resortsnorm: hei hotels resorts
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1056 Input Capture
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Office of the New Hampshire Attorney General
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.