Rite Aid Online Store
bd_c72a26b421540a5e · schema v1 · pii pii-v1
Full breach record for Rite Aid Online Store →Unauthorized third parties accessed Rite Aid Online Store's e-commerce platform between January 30, 2017, and April 11, 2017, acquiring customer personal information including names, addresses, email addresses, and payment card data (credit card numbers, expiration dates, and CVVs). The company retained a security firm and is working with payment card brands. Identity monitoring services were offered to affected customers.
J jump to incidentP pin to compareR raw source
Incident timeline
Jan 30, 2017
Begins
May 17, 2017
Filed
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- New Hampshire State AGbd_20e029fada4609392017-05-17Verified
- Washington State AGbd_5e37c44a2a1b00ff2017-05-17Candidate
- Montana State AGbd_a26905d03e9aade72017-05-17Verified
- Massachusetts State AGbd_af8d3aeec75f429e2017-05-17Verified
Show 1 more filing ↓Show fewer ↑up to 1d gap
- Oregon State AGbd_4007bd7c26da31312017-05-18 · +1dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.