HackingStolen CredentialsSupply Chain (3P Vendor)Data ExfiltratedFINANCIAL_ACCOUNTPIILowContained
Anaheim Majestic Garden Hotel
bd_db5a25cc17bbfbf0 · schema v1 · pii pii-v1
Full breach record for Anaheim Majestic Garden Hotel →Anaheim Majestic Garden Hotel notified California AG that Sabre Hospitality Solutions, a third-party reservations system provider, experienced unauthorized access to payment card and reservation data. The breach occurred between August 10, 2016, and March 9, 2017. Affected data included cardholder names, card numbers, expiration dates, and security codes, along with guest contact details. Sabre engaged forensic investigators, notified law enforcement and card brands, and removed the compromised account.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-131517
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Dec 22, 2017
- Raw hash
- f02738af9fee2cf5d949feb58fc2aa131a4633e219c7d1d9551528be6a53c49b
Reporting entity
- Name
- Anaheim Majestic Garden Hotelnorm: anaheim majestic garden hotel
- Domain
- majesticgardenhotel.com
Victim entity
- Name
- Anaheim Majestic Garden Hotelnorm: anaheim majestic garden hotel
- Domain
- majesticgardenhotel.com
Incident
- Discovered
- Mar 9, 2017
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTPII
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- ExternalFinancial
- Third party
- via Sabre Hospitality Solutions
- Initial access
- supply_chain
Compliance
- Time to disclose
- 41 weeks(288 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.