This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 1215 To_xml

SUMMARY

Unauthorized person accesses payroll data from company server.
Records 59,511
Record Types SSN NAA DOB FIN
Breach Type Hack
Data Family Electronic
Source Outside
Organization Cole National Group, Inc.
Other Affected/Involved Organizations Things Remembered
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: d2d

TIMELINE

DateEvent
2008-04-15 Incident Occurred
2008-09-11 Incident Discovered By Organization
2008-10-14 Organization Reports Incident
2008-10-14 Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
86,205 2009-05-22 Aetna Inc., Taleo Corporation

MAP OF INCIDENT LOCATION

Address: Twinsburg, OH, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $3,570,660.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 983

add details to this primary source Description
Unauthorised access of personal information about name, address, social security number, date of birth and other information required to process payroll.
FilenameSourceResearcher Incident IDs
20081010-Cole.pdfMaine Attorney Generald2d <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
220 2008-10-10 2009-01-12 16 Jan 11:02
Excerpt
983

COLE NATIONAL GROUP, INC. 4000 Luxottica Place Mason, Ohio 45040 Direc: Dial: 513 765-4483 October l0, 2008 Office ofthe Attorney General 6 State House Station Augusta, Maine 04333 Ladies and Gentle...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 680

add details to this primary source Description
Personal information on server accessed by unauthorised person
FilenameSourceResearcher Incident IDs
MD_ITU-161336.pdfMaryland Attorney Generalkirniki <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
1460 2008-10-10 2008-12-09 23 Sep 18:57
Excerpt
680

COLE NATIONAL GROUP, INC. 4000 Luxottica Place ‘ Mason, Ohio 45040 if Direct Dial: 513 765-4483 October 10, 2008 ZIEIQUMBR sqm s- f""’= ‘ mw nf, * ‘ *t ` VIA FACSIMILE (410/576-6566) 1 p Office...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1263

add details to this primary source Description
FilenameSourceResearcher Incident IDs
VA_10102008_things_remembered.pdfVirginia Attorney Generaljkouns <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
1801 2008-10-10 2009-02-03 09 Feb 01:02
Excerpt
1263

COLE NATIONAL GROUP, INC. 4000 Luxottica Place Mason, Ohio 45040 Direct Dini'; 5.'3 765-4483 October I0, 2008 Office ofthe Attorney General _ 35, __,_ ,._ I-. ‘ 900 East Main Street j_.i...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2186

add details to this primary source Description
Massachusetts breach notification: ThingsRemembered.com - -Unauthorized access of personal information about name, address, social security number, date of birth and other information required to process payroll.
FilenameSourceResearcher Incident IDs
20081010_cole_nationa_group.pdfMassachusetts Attorney Generald2d <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
1461 2008-10-10 2009-08-08 01 Jun 07:03
Excerpt
2186

` n COLE NATIONAL GROUP, INC. 4000 Luxottica Place Mason, Ohio 45040 Direct Dial: 513 765-4483 A October 10, 2008 Office of Attomey General Martha Coakley · One Ashburton Place Boston, Massachusetts...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2108

add details to this primary source Description
Massachusetts data breach notification: Cole National Group, Inc - Things Remembered website was accessed by an unauthorized person, exposing personal information about name, address, social security number, date of birth and other information required to process payroll
FilenameSourceResearcher Incident IDs
20081010_things_remembered_MA.pdfMassachusetts Attorney Generald2d <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
1461 2008-10-10 2009-08-08 02 Jun 07:02
Excerpt
2108

` COLE NATIONAL GROUP, INC. 4000 Luxottica Place Mason, Ohio 45040 Direc1DiaI.· 513 765-4483 October 10, 2008 Office of Attorney General Martha Coakley · One Ashburton Place Boston, Massachusetts 02...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1803

add details to this primary source Description
North Carolina Security Breach: Cole National Group, Inc - anonymous FTP allowed unauthorized access to personal information on server. 1,477 NC residents exposed.
FilenameSourceResearcher Incident IDs
20081212_Cole_National_Group.pdfNorth Carolina Department of Justice, Consumer Protection Divisiond2d <a href='/incidents/show/1215'>1215</a>
RecordsFile DateUploadedUpdated
1477 2008-12-12 2009-06-13 02 Jun 07:05
Excerpt
1803

I _ .€ _ [ V . North Carolina Security Breach Reporting Form ‘ . Pursuant to the Identity Theft Protection Act of 2.005 Name of Business Owning or Licensing information Affected by the PLEASE T0:...

Click here for the Full Details | Download Raw PDF

COMMENTS

by d2d [Data Loss Maven] on 2008-11-26 (over 3 years ago)

This may be the things remembered hack. Cole is the parent company

New Comment

captcha
Are you human?

Sponsored By: Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.