HackingRetail & ConsumerRetailVulnerability ExploitCapture App DataData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSPIILowContained
GlamGlow LLC
bd_6db5b35c861b8361 · schema v1 · pii pii-v1
Full breach record for GlamGlow LLC →GlamGlow LLC reported unauthorized access to its glamglowmud.com website. The incident occurred in two windows: approximately September 19–21, 2014 and May 12–15, 2015 (mail letter), or approximately May 18, 2014 to May 20, 2015 (email letter). Compromised data included names, addresses, phone numbers, payment card numbers/expiration dates/security codes, email addresses, and account passwords. GlamGlow engaged outside experts, secured the site, and offered one year of free Equifax credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-58194
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 8, 2015
- Raw hash
- 334e7108d9860e7c8fc3e8214f8c7393b2c83a172b5437931d4d314ca536cd58
Reporting entity
- Name
- GlamGlow LLCnorm: glamglow
- Domain
- glamglowmud.com
Victim entity
- Name
- GlamGlow LLCnorm: glamglow
- Domain
- glamglowmud.com
- Industry
- Retail & Consumerllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1056 Input CaptureT1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.