Jewelry.com, a division of Richline Group, Inc.
bd_cb446a131e6c5dea · schema v1 · pii pii-v1
Full breach record for Jewelry.com, a division of Richline Group, Inc. →2 incidents on fileJewelry.com discovered on May 16, 2017, that unknown individuals gained unauthorized access to its online boutique starting November 16, 2016, via an employee account. Malicious software was installed to capture credit card payment information (card numbers, names, billing addresses, passwords, security codes, expiration dates) from the shopping cart page. The breach affected approximately 7,000 individuals nationwide, including 619 California residents. The company removed the malware, terminated the compromised account, and reported the incident to law enforcement.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 16, 2016
Begins
May 16, 2017
Discovered
Jun 17, 2017
Filed
vs. sector median
3 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.