HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedPCIFINANCIAL_ACCOUNTLowContained
Landry’s, Inc., Golden Nugget Atlantic City, LLC, Golden Nugget Lake Charles, LLC, GNL Corp., GNLV C
bd_7d926ef7ed726004 · schema v1 · pii pii-v1
Full breach record for Landry’s, Inc., Golden Nugget Atlantic City, LLC, Golden Nugget Lake Charles, LLC, GNL Corp., GNLV C →Landry's, Inc. and Golden Nugget entities experienced a payment card data breach involving skimming malware installed on payment processing devices at various locations. The incident occurred between May 2014 and December 2015, exposing cardholder names, numbers, expiration dates, and verification codes. The company engaged a cybersecurity firm, implemented end-to-end encryption, and notified affected customers via mail or email.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-59857
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 29, 2016
- Raw hash
- 69209aabe440ff0516469b72d17d458b3a57a7aab5563949c537947277e9c185
Reporting entity
- Name
- Landry’s, Inc., Golden Nugget Atlantic City, LLC, Golden Nugget Lake Charles, LLC, GNL Corp., GNLV Cnorm: landry s inc golden nugget atlantic city llc golden nugget lake charles llc gnl corp gnlv c
Victim entity
- Name
- Landry’s, Inc., Golden Nugget Atlantic City, LLC, Golden Nugget Lake Charles, LLC, GNL Corp., GNLV Cnorm: landry s inc golden nugget atlantic city llc golden nugget lake charles llc gnl corp gnlv c
Incident
- Discovered
- Dec 1, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PCIFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1056 Input CaptureT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- external_remote_services
Compliance
- Time to disclose
- 14 months(424 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.