DisclosureLens
HackingRetail & ConsumerRetailCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Fairmont Hot Springs Resort

bd_c5be63fa36dde471 · schema v1 · pii pii-v2

Severity

Medium

Discovered

Aug 26, 2025

Filed

Mar 9, 2026

To disclose

Affected

Not disclosed

Confidence

66%
Full breach record for Fairmont Hot Springs Resort

Fairmont Hot Springs Resort notified Nebraska residents of a data security incident occurring on or around August 26, 2025. Unauthorized access or acquisition of personal information, including names, Social Security numbers, dates of birth, and addresses, occurred. The resort engaged Cyberscout (TransUnion) for investigation and remediation, implemented technical safeguards, and offered 12 months of credit monitoring and fraud assistance to affected individuals. Notification was sent on January 13, 2026.

Incident timeline

Aug 26, 2025

Begins

Aug 26, 2025

Discovered

Mar 9, 2026

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.