HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedFINANCIAL_ACCOUNTPIILowContained
SABRE GLBL INC.
bd_819633c3bdf59a72 · schema v1 · pii pii-v1
Full breach record for SABRE GLBL INC. →Delaware North Companies, LLC. reported a data breach involving Sabre Hospitality Solutions, a third-party reservation system provider. Unauthorized access occurred between August 10, 2016, and March 9, 2017, exposing payment card information (card numbers, expiration dates, security codes) and guest PII (names, emails, phone numbers, addresses, reservation details). Delaware North notified law enforcement and payment card brands, retained a forensic investigator, and directed customers to a breach notification website. No SSNs or driver's licenses were exposed.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_ebac4c1bc981d3eaCalifornia State AGfiled 2017-07-14(17d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-100721
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 31, 2017
- Raw hash
- 144605a0eb332c31c2b236013bfefd461362ccd74cc970f99c2769f93d40b81f
Reporting entity
- Name
- Delaware North Companies, Incorporatednorm: delaware north companies
Victim entity
- Name
- SABRE GLBL INC.norm: sabre glbl
Incident
- Discovered
- Mar 9, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 21 weeks(144 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.