MalwareHospitalityCapture App DataCapture Stored DataCustomer Data InvolvedData ExfiltratedDelayed DiscoveryMulti-Stage ChainPCIFINANCIAL_ACCOUNTIDENTITY_BASICLowResolved
Six Continents Hotels
bd_8ef72d261a0a28c0 · schema v1 · pii pii-v1
Full breach record for Six Continents Hotels →InterContinental Hotels Group (IHG) notified guests of a payment card breach at IHG-branded franchise hotel locations in the Americas. Malware was found operating on front-desk payment card processing servers between September 29 and December 29, 2016, capturing track data (cardholder name, card number, expiration date, internal verification code) from magnetic stripes. Malware eradication was confirmed in February–March 2017. IHG engaged a cybersecurity firm and notified law enforcement.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_4a76c7e03c62e29dMontana State AGfiled 2017-04-14Candidate
- bd_bf6597d4b90e0633Washington State AGfiled 2017-04-14Verified
- bd_da3308682a4d4c2cOregon State AGfiled 2017-04-14Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-67635
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 14, 2017
- Raw hash
- 550fd129df766b4750b808a57de75dca43d1d504bf4815c28de2946af53274fe
Reporting entity
- Name
- Six Continents Hotelsnorm: six continents hotels
- Domain
- ihg.com
Victim entity
- Name
- Six Continents Hotelsnorm: six continents hotels
- Domain
- ihg.com
- Industry
- Hospitalityllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PCIFINANCIAL_ACCOUNTIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1056 Input CaptureT1119 Automated CollectionT1074 Data Staged
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified California Office of the Attorney General
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.