HackingVulnerability ExploitData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSLowContained
Reeves Construction Company
bd_9373f3a96e73db20 · schema v1 · pii pii-v1
Full breach record for Reeves Construction Company →Reeves International, Inc. disclosed a cybersecurity incident affecting its Breyer Horses website (breyerhorses.com). Unauthorized individuals installed malicious software on the hosting server between March 31, 2013, and October 6, 2014, compromising customer personal information including names, addresses, usernames, passwords, and payment card details. Reeves engaged forensic investigators and updated website code to remediate the breach.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-47096
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 23, 2014
- Raw hash
- 577b9e0f0fa1e0174376b899aad56ae9222bb915aa5a442f3520f292f233ac5b
Reporting entity
- Name
- Reeves Construction Companynorm: reeves construction
- Domain
- reevescc.com
Victim entity
- Name
- Reeves Construction Companynorm: reeves construction
- Domain
- reevescc.com
Incident
- Discovered
- Sep 9, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 6 weeks(44 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.