Black Phoenix Corp
bd_7dd4353854169aae · schema v1 · pii pii-v1
Full breach record for Black Phoenix Corp →Black Phoenix, Inc. disclosed that malicious code was injected into its checkout page between May 1 and May 16, 2018, potentially compromising credit card data for under 150 customers. The attacker created a bogus admin account. The company neutralized the code, reset passwords, moved to a new server, and notified the FBI and law enforcement.
J jump to incidentP pin to compareR raw source
Incident timeline
May 1, 2018
Begins
May 16, 2018
Discovered
May 17, 2018
Filed
vs. sector median
8 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.