MalwareRansomwareData EncryptedIDENTITY_BASICCREDENTIALSLowContained
DON
bd_7b655178abca88eb · schema v1 · pii pii-v1
Full breach record for DON →Don Best Corporation reported a malware incident occurring between October 12 and 28, 2018, discovered during integration with Scientific Games in December 2018. Unauthorized access resulted in the exposure of customer names, addresses, phone numbers, usernames, and passwords. No credit card data was accessed. Don Best removed the malware and reset customer passwords.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-144464
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 6, 2019
- Raw hash
- 802eac92b40a3db7d570ddc40642b71c27e5928bff8bebd0d3af6719d08fcbf1
Reporting entity
- Name
- DONnorm: don
- Domain
- don.com
Victim entity
- Name
- DONnorm: don
- Domain
- don.com
Incident
- Discovered
- Dec 21, 2018
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
Compliance
- Time to disclose
- 7 weeks(47 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.