ACE Cash Express, Inc.
bd_cf8dfd60d74e9f9d · schema v1 · pii pii-v1
Full breach record for ACE Cash Express, Inc. →ACE Cash Express, Inc. notified California residents that an unauthorized person accessed customer accounts via the ACE Loan App using credentials obtained from a third-party source. The incident occurred between October 27 and November 14, 2018, and was discovered on November 14, 2018. Affected data included names, addresses, phone numbers, emails, bank account numbers, Social Security numbers, and employment information. ACE reset passwords and engaged a cybersecurity firm.
J jump to incidentP pin to compareR raw source
Incident timeline
Oct 27, 2018
Begins
Nov 14, 2018
Discovered
Dec 14, 2018
Filed
vs. sector median
4 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.