PhysicalPIIFINANCIAL_ACCOUNTLowContained
BARNES & NOBLE BOOKSELLERS, INC.
bd_65983531ba75c021 · schema v1 · pii pii-v1
Full breach record for BARNES & NOBLE BOOKSELLERS, INC. →Barnes & Noble Booksellers, Inc. experienced criminal tampering with 63 PIN pad devices across its US retail stores. American Express, the card issuer, notified affected cardholders that names, account numbers, and expiration dates may have been accessed. The incident was contained by September 14, 2012, when all affected devices were powered down. No Social Security numbers were impacted.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-36891
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 2, 2012
- Raw hash
- 2b4ed5897e87a49546ed4894a4d7f33a2f45e6a48cf002b707e353d9b832206c
Reporting entity
- Name
- American Express Travel Related Services Company, Inc. and/or its Affiliatesnorm: american express travel related services company inc and or its affiliates
- Domain
- americanexpress.com
Victim entity
- Name
- BARNES & NOBLE BOOKSELLERS, INC.norm: barnes noble booksellers
- Industry
- retail_consumer
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIFINANCIAL_ACCOUNT
- Attack vector
- Unknown
- MITRE ATT&CK
- T1052 Exfiltration Over Physical Medium
- Threat actor
- ExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.