Cruzstar LLC.
bd_a05e25677a2f8d3c · schema v1 · pii pii-v1
Full breach record for Cruzstar LLC. →Cruzstar LLC (operating MenuDrive) experienced a malware injection attack on its Desktop ordering site between November 5 and November 28, 2017. The malware was designed to capture credit card information during submission. The incident was contained to the Desktop site and did not affect Mobile ordering. Cruzstar engaged a cybersecurity firm, notified federal law enforcement, and worked with credit card brands. No specific count of affected individuals was disclosed in the notice.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 5, 2017
Begins
Mar 2, 2018
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_79bac6664d180ec62018-02-27 · +3dVerified
- New Hampshire State AGbd_e3c49a35cb6558d62018-03-06 · +4dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Pattern: first filing Feb 27 (MA), last Mar 6 (NH) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.