HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSLowContained
Evolution Nature Corp.
bd_d88c612348e706cd · schema v1 · pii pii-v1
Full breach record for Evolution Nature Corp. →Evolution Nature Corp. (The Evolution Store) notified customers that unauthorized IP addresses accessed its e-commerce administrative section using stolen credentials on September 16, 2014. Customer data exposed included names, contact info, order details, and full credit/debit card data (number, CVV, expiration). The company engaged Stroz Friedberg for forensics, reset credentials, restricted IP access, and offered 12 months of identity protection via AllClear ID.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-46935
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 9, 2014
- Raw hash
- 7f1be5b5a7c5bbf9d4aeb5a00c08f14c6e1bb2627f92860878e093bc4fea5189
Reporting entity
- Name
- Evolution Nature Corp.norm: evolution nature
Victim entity
- Name
- Evolution Nature Corp.norm: evolution nature
Incident
- Discovered
- Sep 16, 2014
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Providing notice of this incident to certain state regulators
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 23 days(23 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.