HackingStolen CredentialsCustomer Data InvolvedCREDENTIALSIDENTITY_BASICLowContained
PINTEREST, INC.
bd_76971030e1023460 · schema v1 · pii pii-v1
Full breach record for PINTEREST, INC. →Pinterest notified users that unauthorized login attempts were made to their accounts using email addresses and passwords obtained from breaches of other websites. The incident occurred on November 24, 2017. Pinterest placed affected accounts in Safe Mode and added monitoring systems. Users were advised to reset passwords and enable two-factor authentication.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-131258
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 19, 2017
- Raw hash
- bb3432b458bcf9e83a7b6cc305073c5d150b3d08a08f8539150e9725367778da
Reporting entity
- Name
- PINTEREST, INC.norm: pinterest
Victim entity
- Name
- PINTEREST, INC.norm: pinterest
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Dec 8, 2017
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALSIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- External
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.