HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTLowContained
International Code Council
bd_bc00dc94dfc31a8f · schema v1 · pii pii-v1
Full breach record for International Code Council →International Code Council experienced a data breach affecting customer payment card information (names, addresses, credit/debit card details) between April 25, 2016, and September 14, 2016. The incident was discovered on December 16, 2016, and has been contained. The organization engaged independent forensic investigators and implemented remedial measures including website/server security updates, additional firewalls, and security training.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-66065
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 27, 2017
- Raw hash
- 900f02599deb474ed346837205e701e315e2b07c2d7f77fe3070b3f1fa0d777b
Reporting entity
- Name
- International Code Councilnorm: international code council
Victim entity
- Name
- International Code Councilnorm: international code council
Incident
- Discovered
- Dec 16, 2016
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 6 weeks(42 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.