Vera Bradley, Inc. notified customers of a data breach affecting payment card data used at retail stores between July 25, 2016 and September 23, 2016. Unauthorized access to the payment processing system led to the installation of malware designed to capture magnetic stripe track data. The incident was discovered on September 15, 2016, following law enforcement notification. Vera Bradley engaged a computer security firm, stopped the incident, and notified payment card networks. No other customer information was at risk. The number of affected individuals was not disclosed.