Jewelry.com
ent_25f4a9e6b686fdb8bcc5fb55
Disclosures
2
State AG · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
34
as filed · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Jewelry.com
- Normalized
- jewelrycom— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- New Hampshire State AGas victim2017-06-07
Jewelry.com, a division of Richline Group, Inc., notified the NH Attorney General of a data breach affecting 34 NH residents. Unauthorized access occurred via compromised employee credentials from Nov 16, 2016, to May 1, 2017. Malicious JavaScript captured credit card info (numbers, CVV, names, addresses) and passwords. Jewelry.com removed the code, terminated the account, and engaged law enforcement.
- Montana State AGas victim2017-06-07
Jewelry.com notified customers in Montana of a data breach where intruders used a compromised employee account to install malicious software on the website. Between November 16, 2016, and May 1, 2017, the malware captured credit card numbers, billing addresses, passwords, and security codes. Jewelry.com removed the malware, terminated the account, and engaged legal counsel and law enforcement.