Clustered 3 filings across 3 jurisdictions · filing window Aug 24, 2016 → Sep 2, 2016. View entity profile → Other incidents for this victim →
incident inc_42245ecf848a4e98 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
CA NH OR
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
Apr 26, 2016 → Jun 8, 2016
When the intrusion reportedly occurred, per the linked filings
Jul 26, 2016 – Sep 2, 2016
Earliest reported discovery Jul 26, 2016
Jul 26, 2016
Reported by NEW HAMPSHIRE AG filing
Aug 5, 2016
Reported by OREGON AG filing
Sep 2, 2016
Reported by CALIFORNIA AG filing
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Noble House Hotels & Resorts notified the New Hampshire Attorney General on August 24, 2016, regarding a payment card system compromise at Ocean Key Resort & Spa. Unauthorized access occurred between April 26 and June 8, 2016, potentially affecting 13 New Hampshire residents. Compromised data included payment card numbers, expiration dates, and CVV numbers. The company engaged a security firm, established a call center, and provided substitute notification via website postings and press releases.
Affected (this filing): 13
Noble House Hotels & Resorts notified customers of a malware infection on payment processing systems at multiple properties. The incident, discovered in September 2016, potentially compromised payment card data (magnetic stripe data, CVV) from April to August 2016. The company engaged a security firm and was notified by the Secret Service.
Noble House Hotels & Resorts reported a data breach to the Oregon Attorney General. The breach was reported on 2016-09-02. The breach occurred during 4/25/2016, 8/5/2016. The breach was discovered on 8/5/2016. 50,792 individuals were affected. Notice was sent on 9/2/2016.
Affected (this filing): 50,792