HackingStolen CredentialsData ExfiltratedTargetedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
Chefs
bd_bb3b34fb201a45e9 · schema v1 · pii pii-v1
Full breach record for Chefs →Chefs' Toys, LLC disclosed a data breach involving unauthorized payment card activity on chefstoys.com. Malicious code captured payment card information and names between Nov 12, 2021 and Apr 26, 2022. The company engaged forensic analysis, updated passwords, and implemented security controls.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_e3f9328ea5c46db9Montana State AGfiled 2022-07-05(3d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-555089
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 8, 2022
- Raw hash
- 67eb4464f9c4ff14995ebda6f037e2b50351e08231f46995acb5f815cb3e2cde
Reporting entity
- Name
- Chefsnorm: chefs
- Domain
- ilovechefs.com
Victim entity
- Name
- Chefsnorm: chefs
- Domain
- ilovechefs.com
Incident
- Discovered
- Mar 29, 2022
- Materiality determined
- Jun 24, 2022
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 14 weeks(101 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.