Driveline Retail Merchandising, Inc.
bd_501bcafc1df6efcc · schema v1 · pii pii-v1
Full breach record for Driveline Retail Merchandising, Inc. →Driveline Retail Merchandising, Inc. experienced a phishing incident on January 25, 2017, where an employee responded to a scam email, inadvertently sending 2016 W-2s containing names, addresses, wages, and Social Security numbers of 15,878 employees nationwide (including 56 New Hampshire residents) to unknown third parties. The company notified the NH Attorney General, FBI, and IRS, and offered 12 months of credit monitoring via AllClear ID.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 25, 2017
Begins
Jan 25, 2017
Discovered
Feb 14, 2017
Filed
vs. sector median
5 wks faster
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Montana State AGbd_51a76cc81321414e2017-02-14Verified
- Massachusetts State AGbd_ce8ce68f50cd4c222017-02-14Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.