HackingStolen CredentialsData ExfiltratedData PublishedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
Sekure Merchant solutions
bd_b2f0efccd6ea63dd · schema v1 · pii pii-v1
Full breach record for Sekure Merchant solutions →Sekure Merchant Solutions reported unauthorized access to its environment between January 24 and 27, 2020. An attacker exfiltrated data and published merchant client names and email addresses on the dark web. A subsequent review on June 4, 2020, confirmed that the accessed database contained personal information including names, Social Security numbers, and driver's license numbers. The company secured its network, engaged forensic investigators, and implemented MFA and enhanced security tools. Credit monitoring was offered to affected individuals.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_36ded6b336c52a53Montana State AGfiled 2020-09-03Candidate
- bd_fa565062bf082fe2Oregon State AGfiled 2020-09-03Verified by operator
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-193770
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 3, 2020
- Raw hash
- 28658c06b635a8897eed30422e13a102fb8423754f2eb48d2a28e7ca0a3ad5fb
Reporting entity
- Name
- Sekure Merchant solutionsnorm: sekure merchant
Victim entity
- Name
- Sekure Merchant solutionsnorm: sekure merchant
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jun 4, 2020
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 ChannelT1078 Valid Accounts
- Threat actor
- External
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.