DisclosureLens
UnknownHospitalityHospitalityCustomer Data InvolvedFinancial accountIdentity (basic)LowResolved

MEI-GSR

bd_d253b1f7ceed961d · schema v1 · pii pii-v1

Severity

Low

Discovered

Sep 29, 2015

Filed

Jun 13, 2016

To disclose

37 weeks

Affected

Not disclosed

Confidence

64%

MEI-GSR (Grand Sierra Resort) notified the California AG of a potential compromise of guest payment card information. The incident occurred between Feb 19, 2014, and Aug 6, 2015, and was discovered around Sept 29, 2015. Affected data includes cardholder name, credit card number, expiration date, and Track 1/2 data. The company engaged forensic investigators and enhanced security measures.

California clockDiscovered Sep 29, 2015Notified Jun 10, 2016255d CA 60-day late37 weeks discovery → filing

Incident timeline

undetected · 587 days
discovery → filing · 37 weeks / 258 days

Feb 19, 2014

Begins

Sep 29, 2015

Discovered

Jun 13, 2016

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.