HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Bellacor.com, Inc.
bd_94c734474dd42759 · schema v1 · pii pii-v1
Full breach record for Bellacor.com, Inc. →Bellacor.com, Inc. disclosed a data breach affecting e-commerce customers. An unauthorized third party injected malicious code into temporary transaction files on Bellacor's website between June 7, 2012, and July 26, 2012, accessing customer names, addresses, phone numbers, and encrypted credit card numbers. Bellacor contained the threat, engaged law enforcement, and offered one year of credit monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-32569
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Aug 21, 2012
- Raw hash
- 158153719072df4c458c0834c4f26579d93c0548c1037d9010efba36a73976df
Reporting entity
- Name
- Bellacor.com, Inc.norm: bellacorcom
Victim entity
- Name
- Bellacor.com, Inc.norm: bellacorcom
Incident
- Discovered
- Jul 26, 2012
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 26 days(26 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.