Hard Rock
ent_b25531c183f5b3473d06ce9f
Disclosures
4
State AG · 4 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
142
as filed · State AG MA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Hard Rock
- Normalized
- hard rock— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- hardrock.com
Disclosure history (4)newest first
- Montana State AGas reporting2017-07-07
Sabre Hospitality Solutions, a third-party reservation system provider for Hard Rock Hotels & Casinos, experienced a breach where unauthorized access to account credentials allowed theft of unencrypted payment card data (including CVV) and guest PII. Access occurred between Aug 2016 and Mar 2017. Sabre notified Hard Rock on June 6, 2017, engaged forensic investigators, and notified law enforcement and card brands.
- California State AGas victim2017-07-07
Hard Rock International notified customers of a security incident involving Sabre Hospitality Solutions, a third-party reservation system provider. An unauthorized party gained access to account credentials, allowing access to unencrypted payment card information (card number, expiration, CVV) and reservation details (name, email, phone, address) for a subset of hotel reservations. Access occurred between August 10, 2016, and March 9, 2017. Sabre notified Hard Rock on June 6, 2017, and engaged a cybersecurity firm and law enforcement.
- Massachusetts State AGas victim2017-07-07
Hard Rock International reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-07-07. 142 Massachusetts residents were affected. The report records the breach type as electronic.
- New Hampshire State AGas victim2017-07-07
Sabre Hospitality Solutions, a third-party reservation system provider for Hard Rock Hotels & Casinos, experienced a security incident where unauthorized access to account credentials allowed theft of unencrypted payment card data (including CVVs) and guest PII (names, emails, addresses) from August 2016 to March 2017. Hard Rock notified 23 New Hampshire residents and the NH AG on July 7, 2017.