Rebecca Minkoff
bd_765bb9b93352c75e · schema v1 · pii pii-v1
Full breach record for Rebecca Minkoff →Rebecca Minkoff LLC reported a supplemental cybersecurity incident to the Washington AG. Unauthorized access to the website occurred on or around August 10, 2016. The breach affected 549 Washington residents, compromising names, usernames, passwords, and payment card data. Initial notices were sent September 9, 2016; supplemental notices for 440 additional residents were sent November 7, 2016. Forensic experts were engaged, and payment systems were migrated to a processor.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 10, 2016
Discovered
Nov 4, 2016
Filed
vs. sector median
+5 wks slower
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- New Hampshire State AGbd_5975db7acd104c002016-11-04Verified
- Montana State AGbd_56b72da31493d4512016-11-07 · +3dVerified
- Oregon State AGbd_2435da16c8f53f0c2016-09-29 · +36dVerified
- Massachusetts State AGbd_4b77bfdf1d4e2a872016-09-09 · +56dVerified
Show 2 more filings ↓Show fewer ↑up to 56d gap
- California State AGbd_a1d45ea1e10c25b32016-09-09 · +56dVerified
- Montana State AGbd_e4dda695c3594dc82016-09-09 · +56dCandidate
Filing propagation · 7 filings · 6 states
View merged incident ↗Pattern: first filing Sep 9 (MA), last Nov 7 (MT) — a 59-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.