MalwareRansomwareData ExfiltratedSupply Chain (3P Vendor)Customer Data InvolvedFINANCIAL_ACCOUNTPIILowContained
ECS Tuning, Inc.
bd_ba9fac1aef7790c8 · schema v1 · pii pii-v1
Full breach record for ECS Tuning, Inc. →Rennline Automotive, via third-party vendor Freestyle Solutions, experienced a malware incident affecting payment card data (card numbers, CVV, billing addresses) for customers between September 2020 and February 2022. Freestyle detected the malware and notified Rennline, who subsequently engaged forensic experts, notified law enforcement and card brands, and migrated to a new platform.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_7d9d4000374244eeMontana State AGfiled 2022-06-03Candidate
- bd_5525b261a7457943New Hampshire State AGfiled 2022-06-07(4d gap)Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-554004
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jun 3, 2022
- Raw hash
- b06d4535570c60bdf7925e7302279d0a0feef319d7530025fb9fc292b8e64f1e
Reporting entity
- Name
- ECS Tuning, Inc.norm: ecs tuning
Victim entity
- Name
- ECS Tuning, Inc.norm: ecs tuning
Incident
- Discovered
- Mar 2, 2022
- Materiality determined
- Feb 3, 2022
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Initial access
- supply_chain
Compliance
- Time to disclose
- 13 weeks(93 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.