HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedIDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALSLowContained
eImprovement, LLC
bd_fc00888d37865414 · schema v1 · pii pii-v1
Full breach record for eImprovement, LLC →eImprovement, LLC, operating eFaucets.com, experienced a data breach involving malicious scripts on its checkout page. The attack, occurring around December 14, 2019, captured customer PII and financial data (credit card numbers, CVV). eImprovement engaged forensic investigators, disabled card processing, reported to the FBI, and offered one year of Kroll identity monitoring to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-188609
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Mar 25, 2020
- Raw hash
- e5a7c4868ea86f2a9dca99a739092c118817eab0d51a94a9be80f861e3988ccb
Reporting entity
- Name
- eImprovement, LLCnorm: eimprovement
- Industry
- retail_consumer
Victim entity
- Name
- eImprovement, LLCnorm: eimprovement
- Industry
- retail_consumer
Incident
- Discovered
- Feb 3, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICFINANCIAL_ACCOUNTCREDENTIALS
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1056 Input Capture
- Threat actor
- ExternalFinancial
- Regulator citations
- Reported this security incident to the FBI
- Initial access
- exploit_public_facing
Compliance
- Time to disclose
- 7 weeks(51 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.