Jewelry.com, a division of Richline Group, Inc., disclosed a data breach affecting approximately 7,000 individuals (619 in California). Between November 16, 2016, and May 1, 2017, unauthorized individuals used a compromised employee account to install malicious software on the Jewelry.com website, capturing credit card numbers, security codes, expiration dates, names, and billing addresses. The company removed the malware, terminated the account, disabled the affected computer, retained legal counsel, and notified law enforcement.
Affected (this filing): 7,000