CHIPOTLE MEXICAN GRILL, INC.
bd_59524e43cb4ebde0 · schema v1 · pii pii-v1
Full breach record for CHIPOTLE MEXICAN GRILL, INC. →6 incidents on fileChipotle Mexican Grill, Inc. reported a supplemental finding from its investigation into a payment card security incident. Malware on POS devices at certain locations accessed track data from magnetic stripe cards between March 24 and April 18, 2017. The company removed the malware and is cooperating with law enforcement and card networks. No specific count of affected individuals was provided in this filing.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 24, 2017
Begins
Apr 25, 2017
Discovered
May 30, 2017
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- California State AGbd_4e513ecdc74035352017-05-26 · +4dVerified
- New Hampshire State AGbd_68391e5edcfbc00a2017-05-26 · +4dVerified
- Massachusetts State AGbd_99ddd997d03160572017-05-26 · +4dVerified
- Oregon State AGbd_f910c3c2c36eafa82017-05-26 · +4dCandidate
Show 1 more filing ↓Show fewer ↑up to 6d gap
- Montana State AGbd_adb56249b3ae66352017-06-05 · +6dVerified by operator
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing May 26 (CA), last Jun 5 (MT) — a 10-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.