Mandarin Oriental
ent_17d2c6a5e5031b3182910466
Disclosures
3
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
511
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Mandarin Oriental
- Normalized
- mandarin oriental— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- Massachusetts State AGas victim2015-07-13
Mandarin Oriental reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2015-07-13. 511 Massachusetts residents were affected. The report records the breach type as electronic.
- California State AGas victim2015-07-10
Mandarin Oriental disclosed a malware attack affecting multiple hotel properties globally, including locations in the US, UK, Switzerland, and Hong Kong, between June 18, 2014, and March 12, 2015. The incident resulted in the unauthorized acquisition of guest names and credit card numbers. The company engaged forensic investigators and law enforcement, removed the malware, and offered 12 months of identity protection to affected guests.
- New Hampshire State AGas victim2015-07-10
Mandarin Oriental notified New Hampshire AG of a malware attack on credit card systems at multiple hotels. Attack occurred June 18, 2014 – March 12, 2015. Discovered Feb 25, 2015. 30 NH residents affected; names and credit card numbers acquired. No evidence of misuse. Free credit monitoring offered.