identity theft resource · pdf fileitrc breach id company or agency state published date...

158
Identity Theft Resource Center 2014 Breach List: 12/23/2014 Report Date: How is this report produced? What are the rules? See last page of report for details. Page 1 of 158 761 83,176,279 Breaches: Exposed: ITRC20141223-13 Custom Accessories, Inc. / BolderImage IL 12/20/2014 We are writing to inform you, as a customer of Custom Accessories, Inc., of a recent security incident that may have resulted in the potential disclosure of your personal information, including your name and credit card information. We take the security of your personal information very seriously, and sincerely apologize for any inconvenience this incident may cause. This letter contains more information about the event, and steps you can take to protect your information. Business ITRC Breach ID Company or Agency State Published Date Breach Category Electronic Breach Type Yes - Unknown # Records Reported Records Exposed? Unknown Publication: VT AG's office Author: Attribution 1 http://ago.vermont.gov/assets/files/Consumer/Security_Breach/2014-12-20%20BolderImage%20SBN%20to%20Consu Article Title: Custom Accessories, Inc. / BolderImage Article URL: ITRC20141223-12 Park 'N Fly GA 12/1/2014 Two separate banks have uncovered a pattern of credit card fraud indicating that airport parking company Park 'N Fly has been breached, according to Krebs on Security's Brian Krebs. Krebs reports that both banks discovered a pattern of fraud on "a significant number" of credit cards that had recently been used to make online reservations at Park 'N Fly locations nationwide. Business ITRC Breach ID Company or Agency State Published Date Breach Category Electronic Breach Type Yes - Unknown # Records Reported Records Exposed? Unknown Publication: esecurity.planet Author: Jeff Goldman Attribution 1 http://www.esecurityplanet.com/hackers/park-n-fly-hacked.html Article Title: Park 'N Fly Investigates Possible Credit Card Breach Article URL: ITRC20141223-11 Office of Personnel Management / Keypoint CO 12/18/2014 Federal officials are saying the personal information of thousands of employees has been compromised by a computer breach at KeyPoint Government Solutions Inc., according to reports. The company conducts background investigations of federal employees seeking security clearances. Government/Military ITRC Breach ID Company or Agency State Published Date Breach Category Electronic Breach Type Yes - Published # 48,439 Records Reported Records Exposed? Publication: bizjournals.com Author: Drew Hansen Attribution 1 http://www.bizjournals.com/washington/blog/fedbiz_daily/2014/12/keypoint-suffers-computer-breach-potentially.html? Article Title: KeyPoint suffers computer breach, potentially exposing thousands of federal workers Article URL: ITRC20141223-10 Presidian Hotels & Resorts CA 12/19/2014 We noted that the point-of-sale (POS) system used at the food and beverage outlets was not functioning normally. We commenced an internal investigation, disconnected the POS and also notified Federal law enforcement. The preliminary results of the investigation revealed malicious software and remnants of such software three POS terminals used at food and beverage outlets at the hotel. Because this malicious software (also referred to as malware) was detected, the credit/debit card data entered on these devices from July 26, 2014 – September 2, 2014 was at risk of theft. Business ITRC Breach ID Company or Agency State Published Date Breach Category Electronic Breach Type Yes - Unknown # Records Reported Records Exposed? Unknown Publication: Presidian.com Author: Attribution 1 http://presidian.com/credit-card-security-information/ Article Title: Presidian Hotels & Resorts Article URL: ITRC20141223-09 Office of Rob Kirby, CPA CA 12/23/2014 It is with a heavy heart that I bring you this news. On Friday December 19, 2014, my vehicle was broken into. My briefcase, laptop (password protected) and a flash drive containing confidential client information was stolen. The car was locked and parked on a well-lit commercial area in front of a busy restaurant. Business ITRC Breach ID Company or Agency State Published Date Breach Category Electronic Breach Type Yes - Unknown # Records Reported Records Exposed? Unknown Publication: CA AG's office Author: Attribution 1 https://oag.ca.gov/system/files/Security%20Breach%20Notification_1.pdf? Article Title: Office of Rob Kirby, CPA Article URL: Copyright 2014 Identity Theft Resource Center

Upload: dolien

Post on 09-Mar-2018

242 views

Category:

Documents


9 download

TRANSCRIPT

  • Identity Theft Resource Center2014 Breach List:

    12/23/2014Report Date:How is this report produced? What are the rules? See last page of report for details. Page 1 of 158

    761 83,176,279Breaches: Exposed:

    ITRC20141223-13 Custom Accessories, Inc. /

    BolderImage

    IL 12/20/2014

    We are writing to inform you, as a customer of Custom Accessories, Inc., of a recent security incident that may have resulted in the potential disclosure of your personal information, including your name and credit card information. We take the security of your personal information very seriously, and sincerely apologize for any inconvenience this incident may cause. This letter contains more information about the event, and steps you can take to protect your information.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: VT AG's office Author:Attribution 1

    http://ago.vermont.gov/assets/files/Consumer/Security_Breach/2014-12-20%20BolderImage%20SBN%20to%20Consu

    Article Title: Custom Accessories, Inc. / BolderImage

    Article URL:

    ITRC20141223-12 Park 'N Fly GA 12/1/2014

    Two separate banks have uncovered a pattern of credit card fraud indicating that airport parking company Park 'N Fly has been breached, according to Krebs on Security's Brian Krebs. Krebs reports that both banks discovered a pattern of fraud on "a significant number" of credit cards that had recently been used to make online reservations at Park 'N Fly locations nationwide.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: esecurity.planet Author: Jeff GoldmanAttribution 1

    http://www.esecurityplanet.com/hackers/park-n-fly-hacked.html

    Article Title: Park 'N Fly Investigates Possible Credit Card Breach

    Article URL:

    ITRC20141223-11 Office of Personnel

    Management / Keypoint

    CO 12/18/2014

    Federal officials are saying the personal information of thousands of employees has been compromised by a computer breach at KeyPoint Government Solutions Inc., according to reports. The company conducts background investigations of federal employees seeking security clearances.

    Government/Military

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Published # 48,439

    Records ReportedRecords Exposed?

    Publication: bizjournals.com Author: Drew HansenAttribution 1

    http://www.bizjournals.com/washington/blog/fedbiz_daily/2014/12/keypoint-suffers-computer-breach-potentially.html?

    Article Title: KeyPoint suffers computer breach, potentially exposing thousands of federal workers

    Article URL:

    ITRC20141223-10 Presidian Hotels & Resorts CA 12/19/2014

    We noted that the point-of-sale (POS) system used at the food and beverage outlets was not functioning normally. We commenced an internal investigation, disconnected the POS and also notified Federal law enforcement. The preliminary results of the investigation revealed malicious software and remnants of such software three POS terminals used at food and beverage outlets at the hotel. Because this malicious software (also referred to as malware) was detected, the credit/debit card data entered on these devices from July 26, 2014 September 2, 2014 was at risk of theft.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: Presidian.com Author:Attribution 1

    http://presidian.com/credit-card-security-information/

    Article Title: Presidian Hotels & Resorts

    Article URL:

    ITRC20141223-09 Office of Rob Kirby, CPA CA 12/23/2014

    It is with a heavy heart that I bring you this news. On Friday December 19, 2014, my vehicle was broken into. My briefcase, laptop (password protected) and a flash drive containing confidential client information was stolen. The car was locked and parked on a well-lit commercial area in front of a busy restaurant.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office Author:Attribution 1

    https://oag.ca.gov/system/files/Security%20Breach%20Notification_1.pdf?

    Article Title: Office of Rob Kirby, CPA

    Article URL:

    Copyright 2014 Identity Theft Resource Center

    http://ago.vermont.gov/assets/files/Consumer/Security_Breach/2014-12-20%20BolderImage%20SBN%20to%20Consumer.pdfhttp://www.esecurityplanet.com/hackers/park-n-fly-hacked.htmlhttp://www.bizjournals.com/washington/blog/fedbiz_daily/2014/12/keypoint-suffers-computer-breach-potentially.html?s=printhttp://presidian.com/credit-card-security-information/https://oag.ca.gov/system/files/Security%20Breach%20Notification_1.pdf?

  • Identity Theft Resource Center2014 Breach List:

    12/23/2014Report Date:How is this report produced? What are the rules? See last page of report for details. Page 2 of 158

    761 83,176,279Breaches: Exposed:

    ITRC20141223-08 DutchWeat (Boersma Bros.,

    LLC)

    OR 11/7/2014

    As a DutchWear fan, you already know we value our relationship with you more than anything else: we value your friendship, your business, and the privacy of your information. Our company, Boersma Bros. LLC, dba DutchWear, was recently made aware of an incident that may involve your personal information. On Saturday, December 6th, 2014, we received information that raised suspicion of an unauthorized breach of our website that was exposing the payment information for some customers of DutchWear.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office Author:Attribution 1

    https://oag.ca.gov/system/files/Dutch%20Indiv_0.pdf?

    Article Title: DutchWeat (Boersma Bros., LLC)

    Article URL:

    ITRC20141223-07 Nvidia CA 12/17/2014

    We recently learned during the week of December 1st that there was unauthorized access to our network, that involved a number of employee usernames and passwords, including yours. There is no indication that any . other data of yours has been accessed.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office Author:Attribution 1

    https://oag.ca.gov/system/files/Notice%2C%2012-17-2014_0.pdf?

    Article Title: Nvidia

    Article URL:

    ITRC20141223-06 Quest Diagnostics NJ 11/17/2014

    Unfortunately, there has been an incident that resulted in some of your personal information mistakenly sent outside of the company. First and foremost, we want to share with you that we have no reason to believe your information is at risk for identity theft. We have taken steps to address the incident and, as a precaution, are offering you free credit monitoring services. Here's what happened. On November 17, 2014, a Quest Diagnostics employee inadvertently sent a standard report via secured email to two individuals from outside companies with whom we have a business relationship.

    Medical/Healthcare

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office / databreaches.net Author:Attribution 1

    https://oag.ca.gov/system/files/Quest%20attachment%20to%20CA%20online%20submission_0.pdf?

    Article Title: Quest Diagnostics

    Article URL:

    ITRC20141223-05 IDParts.com MA 12/22/2014

    We value your business and respect the privacy of your information, which is why, as a precautionary measure, we are writing to notify you of a breach of security that may have involved information from your credit card ending in 6789. To our knowledge, the breach of security did not involve your name, address or phone number. Upon discovering the breach of security, we promptly took measures to protect the type of information that was involved in the incident.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office Author:Attribution 1

    https://oag.ca.gov/system/files/notification_0.pdf?

    Article Title: IDParts.com

    Article URL:

    ITRC20141223-04 Harmonic Inc. CA 10/17/2014

    We are writing to inform you of a potential information security incident involving your personal information. While Harmonic does not know whether your personal information has been or will be misused, as a precaution, we are writing to tell you about the incident and call your attention to some steps you may take to help protect yourself.

    Business

    ITRC Breach ID Company or Agency State Published Date Breach Category

    Electronic

    Breach Type

    Yes - Unknown #

    Records ReportedRecords Exposed?

    Unknown

    Publication: CA AG's office Author:Attribution 1

    https://oag.ca.gov/system/files/Laptop%20incident%20notification%20letter%20%28form%29_0.pdf?

    Article Title: Harmonic Inc.

    Article URL:

    Copyright 2014 Identity