DisclosureLens
HackingRetail & ConsumerRetailVulnerability ExploitData ExfiltratedCustomer Data InvolvedPIIFinancial accountIdentity (basic)LowContained

Match-Up Solutions, LLC

bd_b47076801d207483 · schema v1 · pii pii-v1

Severity

Low

Discovered

May 3, 2016

Filed

May 26, 2016

To disclose

23 days

Affected

1state residents only

Confidence

65%
Full breach record for Match-Up Solutions, LLC

Match-Up Solutions, LLC notified customers of a data security incident involving unauthorized access to its online stores (travelerscurrierandivescalendar.com and travelersonline store.com). The incident, discovered on May 3, 2016, potentially exposed names, addresses, and credit/debit card details for purchases made between Dec 7, 2015, and May 3, 2016. Match-Up took sites offline, engaged forensic experts, and offered 12 months of identity protection.

Incident timeline

undetected · 148 days
discovery → filing · 23 days

Dec 7, 2015

Begins

May 3, 2016

Discovered

May 26, 2016

Filed

vs. sector median

4 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed1 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.