HILTON WORLDWIDE HOLDINGS INC.
bd_5121296658c0299e · schema v1 · pii pii-v1
Full breach record for HILTON WORLDWIDE HOLDINGS INC. →Hilton Worldwide, Inc. reported a cybersecurity incident involving unauthorized malware targeting payment card information in point-of-sale systems at its hotels. The malware operated between November 2014 and July 2015. Data compromised included cardholder names, payment card numbers, security codes, and expiration dates. Hilton engaged forensic experts and law enforcement, eradicated the malware, and offered one year of credit monitoring. The exact number of affected individuals was not disclosed.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 18, 2014
Begins
Feb 10, 2015
Discovered
Nov 24, 2015
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_5b9bdc8464cf74622015-11-24Verified
- Montana State AGbd_78dc814dedd567522015-11-24Verified
- California State AGbd_a7c1b60b6a8d4dfd2015-11-24Verified
- South Carolina State AGbd_25af5c6d175009732015-12-03 · +9dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Nov 24 (MA), last Dec 3 (SC) — a 9-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.