Cheddar's Scratch Kitchen
ent_ff3560a27b068eddaf28f662
Disclosures
7
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
567,000
nationwide · State AG NH
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Cheddar's Scratch Kitchen
- Normalized
- cheddar s scratch kitchen— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (7)newest first
- South Carolina State AGas victim2018-08-28
Cheddar's Scratch Kitchen notified guests that unauthorized access to its network between Nov 3, 2017 and Jan 2, 2018 may have compromised payment card information. The incident was discovered on Aug 16, 2018. The affected network was disabled. ID Experts provided identity protection services to affected individuals.
- New Hampshire State AGas victim2018-08-24
Cheddar's Scratch Kitchen notified the NH AG of a breach where unauthorized access occurred between Nov 3, 2017, and Jan 2, 2018. The incident potentially affected 567,000 payment card numbers across 23 states. Cheddar's was notified by law enforcement on Aug 16, 2018, engaged forensic investigators, and replaced the affected network. Identity protection services were offered to affected individuals.
- Oregon State AGas victim2018-08-23
Cheddar's Scratch Kitchen reported a data breach to the Oregon Attorney General. The breach was reported on 2018-08-23. The breach occurred during 11/3/2017 - 11/3/2017. The breach was discovered on 8/16/2018. 56,700 individuals were affected. Notice was sent on 8/22/2018.
- California State AGas victim2018-08-23
Cheddar's Scratch Kitchen disclosed that between November 3, 2017, and January 2, 2018, an unauthorized party gained access to its network, potentially obtaining payment card information from guests at restaurants in 23 states. The company learned of the incident on August 16, 2018. The affected network was disabled and replaced by April 10, 2018. The company engaged a third-party cybersecurity firm and offered identity protection services to affected individuals.
- Washington State AGas victim2018-08-22
Cheddar's Scratch Kitchen disclosed a cyberattack occurring between November 3, 2017, and January 2, 2018, discovered on August 16, 2018. Unauthorized access to a now-disabled network resulted in the potential exposure of payment card information for customers in 22 states. The company engaged forensic investigators and offered credit monitoring services.
- Montana State AGas victim2018-08-16
Cheddar's Scratch Kitchen, owned by Darden Restaurants, disclosed unauthorized access to its network between Nov 2017 and Jan 2018. The incident compromised payment card information for customers in 23 states. The company engaged forensic investigators and offered credit monitoring.
- South Carolina State AGas victim2017-10-13
Cheddar's Scratch Kitchen reported a break-in at a corporate facility in Texas on July 21, 2017, resulting in the theft of laptops and a hard drive. The stolen devices contained personal information of team members, including Social Security numbers, contact information, and employment-related data. Limited guest information may also have been involved. The company contacted law enforcement and is offering identity theft protection services to affected individuals.