MalwareRansomwareData ExfiltratedCustomer Data InvolvedFINANCIAL_ACCOUNTPIILowContained
Consolidated Restaurant Operations, Inc.
bd_6de4c6543868287e · schema v1 · pii pii-v1
Full breach record for Consolidated Restaurant Operations, Inc. →Checkers Drive-In Restaurants, Inc. disclosed a data breach involving malware installed on point-of-sale systems at affected Checkers and Rally's locations. The malware collected payment card data (cardholder name, number, verification code, expiration date) from magnetic stripes. The incident affected approximately 15% of restaurants across multiple US states, with exposure windows ranging from July 2017 to April 2019. Checkers engaged security experts, contained the malware, and notified federal law enforcement. No other personal information was affected.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_a20dea545d6f4ae3California State AGfiled 2019-05-29Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2019/07/Checkers-Drive-In-Restaurants-Inc-Substitute-Notice-FINAL.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 29, 2019
- Raw hash
- df054357126f9bbf678fda83eed70e764075989fb382552459aa6c580b3238e8
Reporting entity
- Name
- Consolidated Restaurant Operations, Inc.norm: consolidated restaurant operations
- Domain
- croinc.com
Victim entity
- Name
- Consolidated Restaurant Operations, Inc.norm: consolidated restaurant operations
- Domain
- croinc.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 29, 2019
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Coordinated with federal law enforcement authorities
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.