HackingData ExfiltratedCustomer Data InvolvedSupply Chain (3P Vendor)IDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Club Quarters Hotels
bd_9c18f9b8239a3972 · schema v1 · pii pii-v1
Full breach record for Club Quarters Hotels →Club Quarters Hotels reported a data breach involving its reservation system provider, Sabre Corporation. Unauthorized access occurred between August 10, 2016, and March 9, 2017. The incident potentially exposed customer names, email addresses, phone numbers, mailing addresses, and payment card information. Sabre engaged a cybersecurity firm and notified law enforcement. Club Quarters retained outside legal counsel and is coordinating with Sabre to notify affected guests.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-100249
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 12, 2017
- Raw hash
- 3bd1ffd8c307b629923415c278d590e80b2fd9418168a2bbeb941ea8db89ddce
Reporting entity
- Name
- Club Quarters Hotelsnorm: club quarters hotels
Victim entity
- Name
- Club Quarters Hotelsnorm: club quarters hotels
Incident
- Discovered
- Jun 1, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- External
- Third party
- via Sabre Corporation
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 6 weeks(41 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.