HackingStolen CredentialsData ExfiltratedIDENTITY_BASICLowContained
Christie's Inc.
bd_5b5247becf5f90ac · schema v1 · pii pii-v1
Full breach record for Christie's Inc. →Christie’s disclosed a cybersecurity incident discovered on May 9, 2024, where an unauthorized actor accessed systems and copied files containing names and other personal information between May 8-9, 2024. The company engaged external experts, notified law enforcement, and offered 12 months of identity monitoring to affected individuals.
Vermont clock⏱ VT AG >14 bday29 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- bd_03c1a583e7ece3f4Montana State AGfiled 2024-06-07Candidate
- bd_2fcf3b9660b93475Maine State AGfiled 2024-06-07Candidate
- bd_3afd5c49c448d174California State AGfiled 2024-06-07Verified
- bd_470f96c768ca05bbOregon State AGfiled 2024-06-07Verified
Show 3 more filings ↓Show fewer ↑up to 7d gap
- bd_54ca5b849889c95fWashington State AGfiled 2024-06-07Verified
- bd_7945170e2852ccceIndiana State AGfiled 2024-06-07Verified
- bd_23b1be388df840b0New Hampshire State AGfiled 2024-06-14(7d gap)Verified
Source provenance
- Source URL
- https://ago.vermont.gov/document/2024-06-07-christies-data-breach-notice-consumers
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 7, 2024
- Raw hash
- f06f7fbaa58987a5abe5da6d2152d42c8d2ab63b7f13ac0fcb89b97571e9e40d
Reporting entity
- Name
- Christie's Inc.norm: christie s
Victim entity
- Name
- Christie's Inc.norm: christie s
Incident
- Discovered
- May 9, 2024
- Materiality determined
- May 9, 2024
- Notification sent
- May 30, 2024
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- notified law enforcement and continue supporting their investigation
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 29 days(29 days from discovery to filing)
- Compliance flags
- VT AG >14 bday
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.