Sears Holdings Corporation
ent_019e5b5ae5837c47c7fdccafca314b8f
Disclosures
2
State AG · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
2,373
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Sears Holdings Corporation
- Normalized
- sears holdings— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300KWWR4P1RYUVG65
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- 🐻California State AGas victim2018-05-17
Sears Holdings Management Corporation notified customers that a vendor providing online support services for Sears.com and Kmart.com experienced a security incident. An unauthorized individual incorporated a malicious script into the vendor's code, collecting personal information (name, address) and payment card information from customers who completed online orders between September 27, 2017, and October 12, 2017. Sears was informed of the incident in mid-March 2018. Payment card companies were notified, and an investigation was conducted. No evidence suggests Sears' internal systems were accessed.
- 🌲Washington State AGas victim2018-04-24
Sears Holdings, a business sector entity reported a malware incident to the Washington Attorney General. The organization became aware of the incident on 2018-03-15 and filed notice on 2018-04-24. 2,373 Washington residents were affected. 40 days elapsed between awareness and notification. 169 days to identify the breach. 0 days to contain the breach.