Blue Mercury, Inc.
bd_fe64d7935ba61d09 · schema v1 · pii pii-v1
Full breach record for Blue Mercury, Inc. →Blue Mercury, Inc. notified Washington AG of a breach affecting 778 residents. Attackers placed malware on third-party provider Aptos' servers between Feb 2016 and Dec 2016, accessing names, addresses, phone numbers, and payment card data. Bluemercury ended its relationship with Aptos and offered identity protection.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 26, 2016
Begins
Nov 28, 2016
Discovered
Feb 25, 2017
Filed
vs. sector median
+5 wks slower
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.