DisclosureLens
HackingRetail & ConsumerRetailSupply Chain (3P Vendor)Customer Data InvolvedPCIFinancial accountIdentity (basic)LowContained

Clif Family Winery

bd_cfe1e6158b4870be · schema v1 · pii pii-v1

Severity

Low

Discovered

May 27, 2015

Filed

Jun 10, 2015

To disclose

14 days

Affected

Not disclosed

Linked

2 filings

Confidence

63%
Full breach record for Clif Family Winery

Clif Bar Family Winery & Farm, LLC notified customers that its third-party ecommerce provider, Missing Link Networks, Inc. (MLN), experienced a data security incident. The intruder potentially accessed payment card transaction data for transactions occurring between April 1 and April 30, 2015. Affected data may include name, payment card number, related payment address, and date of birth. MLN identified and fixed the breach vectors and notified law enforcement and card networks. No specific count of affected individuals was disclosed in the notice.

California clockDiscovered May 27, 2015Notified Jun 10, 201514d CA 60-day OK14 days discovery → filing

Incident timeline

undetected · 56 days
discovery → filing · 14 days

Apr 1, 2015

Begins

May 27, 2015

Discovered

Jun 10, 2015

Filed

vs. sector median

6 wks faster

This filing is one of 2 about the same incident.View merged incident
Part of Missing Link Network supply-chain incident (2015) — a supply-chain cascade affecting multiple organizations.View cascade →

Linked disclosures

Why this link?

Regulatory filings (1) · sorted by filing gap

Filing propagation · 2 filings · 2 states

View merged incident ↗
California State AGJun 10 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.