DisclosureLens
HackingHospitalityHospitalitySkimmerCustomer Data InvolvedFinancial accountFinancial credentialsLowContained

HEI Hospitality LLC

bd_85a212174acf3a1a · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

Sep 2, 2010

To disclose

Affected

14state residents only

Confidence

66%

HEI Hospitality LLC notified the New Hampshire Attorney General of a potential security breach at certain hotel properties, including the Algonquin Hotel and several Marriott-branded hotels. Between March 25 and April 17, 2010, electronic point-of-sale systems were illegally accessed, potentially compromising credit card information (card number, expiration date, security code, magnetic stripe data) for approximately 14 New Hampshire residents. HEI engaged forensic investigators, notified law enforcement and payment card networks, and offered one year of free credit monitoring to affected individuals.

Incident timeline

Mar 25, 2010

Begins

Sep 2, 2010

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed14 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.