Preferred Hotels & Resorts
bd_b9283f1173df061d · schema v1 · pii pii-v1
Preferred Hotels & Resorts notified customers that its service provider, Sabre Hospitality Solutions, experienced a data security incident. An unauthorized party accessed Sabre's system using stolen credentials between June 2016 and November 2017, viewing reservation information including payment card details (names, numbers, expiration dates, potentially CVVs) and guest contact info. No Preferred systems were directly compromised. Sabre enhanced security controls.
J jump to incidentP pin to compareR raw source
Incident timeline
Jun 1, 2016
Begins
Mar 2, 2018
Filed
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Washington State AGbd_0b11bd44018a4b032018-03-02Candidate
- New Hampshire State AGbd_24e0474a5c4393b22018-03-02Verified
- Oregon State AGbd_92af1cd4dff3ae962018-03-02Verified
- Massachusetts State AGbd_34823ecac168feff2018-03-09 · +7dVerified
Filing propagation · 5 filings · 5 states
View merged incident ↗Pattern: first filing Mar 2 (WA), last Mar 9 (MA) — a 7-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.