HackingStolen CredentialsCustomer Data InvolvedFINANCIAL_ACCOUNTCREDENTIALSLowActive
Beyond Yoga
bd_f63791caeb961f44 · schema v1 · pii pii-v1
Full breach record for Beyond Yoga →Beyond Yoga notified customers that their personal information, including payment card data and usernames/passwords, may have been exposed between July and August 2016. The company discovered the incident in August 2016 and is requiring all customers to reset their passwords, disabling existing accounts until new passwords are set. The investigation is ongoing.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-64630
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Oct 28, 2016
- Raw hash
- 536d4f77ced998b3d3a1834497dd4791d1f7c89e9aa53382b301e1cee545278f
Reporting entity
- Name
- Beyond Yoganorm: beyond yoga
- Domain
- beyondyoga.com
Victim entity
- Name
- Beyond Yoganorm: beyond yoga
- Domain
- beyondyoga.com
Incident
- Discovered
- Aug 1, 2016
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Unknown
- MITRE ATT&CK
- T1078 Valid Accounts
Compliance
- Time to disclose
- 13 weeks(88 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.