HackingStolen CredentialsSupply Chain (3P Vendor)Data ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSLowContained
Rhys Vineyards
bd_ab33106d9ff8398d · schema v1 · pii pii-v1
Full breach record for Rhys Vineyards →Rhys Vineyards disclosed a security incident involving its third-party ecommerce provider, Missing Link Networks, Inc. The breach occurred between April 1 and April 30, 2015, potentially exposing customer names, credit/debit card numbers, payment addresses, passwords, and dates of birth. The incident was reported on May 27, 2015. The breach has been contained, and Missing Link upgraded its security systems. Customers were advised to update passwords and monitor accounts.
California clockDiscovered May 27, 2015 → Notified May 27, 20150d ✓ CA 60-day OK22 days discovery → filing
⚠ notification dateThe stored discovery date equals the NOTIFICATION date, collapsing the clock to ~zero. This UNDERSTATES the delay and can mask a real violation.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-56455
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 18, 2015
- Raw hash
- 9552f50fe50239507c555339be8a61fe2db99a3fe41cdf4e4cc3a876949f6635
Reporting entity
- Name
- Rhys Vineyardsnorm: rhys vineyards
- Domain
- rhysvineyards.com
Victim entity
- Name
- Rhys Vineyardsnorm: rhys vineyards
- Domain
- rhysvineyards.com
Incident
- Discovered
- May 27, 2015
- Materiality determined
- —
- Notification sent
- May 27, 2015
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Third party
- via Missing Link Networks, Inc.
- Initial access
- supply_chain
Compliance
- Time to disclose
- 22 days(22 days from discovery to filing)
- Compliance flags
- CA 60-day OK · 0d
- Discovery-date grounding
- notification dateThe stored discovery date equals the NOTIFICATION date, collapsing the clock to ~zero. This UNDERSTATES the delay and can mask a real violation.
- Clock breakdown
Statute Window Elapsed Threshold Status California Discovered: May 27, 2015→ Notified: May 27, 20150d 60 days (analyst band, pre-2026 discoveries) CA 60-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.