HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedCREDENTIALSIDENTITY_BASICLowContained
ROMWE
bd_b53034c3920d7e41 · schema v1 · pii pii-v1
Full breach record for ROMWE →ROMWE, operated by Zoetop Business Co. Ltd, disclosed that customer usernames and passwords were stolen from its network in July 2018 and discovered on September 7, 2020. The incident involved unauthorized access and exfiltration of credentials and basic PII (name, email, phone). ROMWE forced password resets and offered 12 months of identity theft protection services to affected customers across multiple US states.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_41b3a67cdba01baaSouth Carolina State AGfiled 2020-12-30Candidate
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2021/01/US-Customer-Notification-ROMWE-Zoetop-Business.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 30, 2020
- Raw hash
- 3c312f3e96e823a4fc03531467a99f3a2bc22652fe0583871aea4d29823d2265
Reporting entity
- Name
- Zoetop Business Co. Ltd.norm: zoetop business
- Domain
- romwe.com
- Industry
- Retail
Victim entity
- Name
- ROMWEnorm: romwe
- Domain
- romwe.com
- Industry
- Retail
Incident
- Discovered
- Sep 7, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- CREDENTIALSIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified multiple state Attorneys General (Iowa, Oregon, New Mexico, DC, Illinois, Maryland, New York, North Carolina, Rhode Island, Massachusetts)
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 16 weeks(114 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.