HackingVulnerability ExploitCustomer Data InvolvedFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSIDENTITY_BASICCREDENTIALSLowContained
Sourcebooks, LLC.
bd_7b0eee4c451b6281 · schema v1 · pii pii-v1
Full breach record for Sourcebooks, LLC. →Sourcebooks, Inc. disclosed a breach of its shopping cart software supporting putmeinthestory.com and other websites. Unauthorized parties accessed customer credit card information (card number, expiration date, CVV2) and billing/shipping details (name, address, phone, email) between April 16, 2014, and June 19, 2014. Some account passwords were also obtained. The company implemented new PCI security measures, hired forensic experts, and revised internal processes.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-47029
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 17, 2014
- Raw hash
- c8658aeda9acbc36cd7a5b3043013c65ff9ef34ea82249ea488d106f3c17fba9
Reporting entity
- Name
- Sourcebooks, LLC.norm: sourcebooks
- Domain
- sourcebooks.com
Victim entity
- Name
- Sourcebooks, LLC.norm: sourcebooks
- Domain
- sourcebooks.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Oct 17, 2014
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSIDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.