Great Smoky Mountains Association
bd_4e7de66d1c31fad4 · schema v1 · pii pii-v1
Full breach record for Great Smoky Mountains Association →Great Smoky Mountains Association notified customers of a security incident where an unauthorized party added malicious code to its e-commerce platform, capturing payment card data (name, address, card number, CVV) submitted between May 21 and December 18, 2021. The incident was discovered on December 18, 2021. The company engaged a cybersecurity firm and is enhancing platform security.
J jump to incidentP pin to compareR raw source
Incident timeline
May 21, 2021
Begins
Dec 18, 2021
Discovered
Jun 23, 2022
Filed
vs. sector median
+19 wks slower
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_4030c5fbb65cca8f2022-06-23Verified
- Indiana State AGbd_6e27d71e63c8cf012022-06-23Verified
- Maine State AGbd_e47f4e45b6198cf52022-06-23Verified
- Washington State AGbd_f0aa823fbad710b52022-06-23Verified
Filing propagation · 5 filings · 5 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.