HackingStolen CredentialsData ExfiltratedData EncryptedCustomer Data InvolvedIDENTITY_BASICCREDENTIALSLowActive
ShareThis
bd_b6beeb3424767878 · schema v1 · pii pii-v1
Full breach record for ShareThis →ShareThis disclosed a data breach affecting customer accounts. The incident occurred in July 2018 and was discovered on February 11, 2019, after The Register reported data theft. Exposed data included names, email addresses, birth dates, and hashed passwords. ShareThis deactivated affected accounts and engaged forensic experts. No financial information or unhashed passwords were compromised. The notice was sent to Delaware and Rhode Island residents.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://attorneygeneral.delaware.gov/wp-content/uploads/sites/50/2019/06/ShareThis-Consumer-Notice.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 1, 1971
- Raw hash
- 1f1b359c70148e1de0ae2f6767239538742f7a29d96f6f3b1b5dac37f11baf57
Reporting entity
- Name
- ShareThisnorm: sharethis
- Domain
- sharethis.com
Victim entity
- Name
- ShareThisnorm: sharethis
- Domain
- sharethis.com
Incident
- Discovered
- Feb 11, 2019
- Materiality determined
- —
- Notification sent
- Feb 26, 2019
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.