This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 1557 To_xml

SUMMARY

Personal information about name, address, social security number, driver's license number, credit card details accessed by unauthorised person by hacking in the system
Records 130,000
Record Types CCN NAA MISC ACC FIN FIN
Breach Type Hack
Data Family Electronic
Source Outside
Organization Merchant America
Other Affected/Involved Organizations None
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: osf1

TIMELINE

DateEvent
None. Add Data Incident Occurred
2007-01-24 Incident Discovered By Organization
2007-02-06 Organization Reports Incident
2007-03-23 Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
300,000 2000-01-10 CD Universe
98,000 2001-03-05 Amazon, Bibliofind.com
310,000 2005-04-12 LexisNexis, Accurint, Seisint, Port Orange Police Department , Reed Elsevier
140,000 2005-11-26 Troy Group, Scottrade

MAP OF INCIDENT LOCATION

Address: California, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $7,800,000.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 222

add details to this primary source Description
Personal information about name, social security number, date of birth etc accessed by unauthorised person
FilenameSourceResearcher Incident IDs
NH_merchant.pdfNew Hampshire Consumer Protection & Antitrust Bureaukirniki <a href='/incidents/show/1557'>1557</a>
RecordsFile DateUploadedUpdated
482 2007-03-23 2008-12-04 23 Sep 13:36
Excerpt
222

Ofllcc of tho Atto1·11c:y Ciom:1·::Li Smit: of Now H€il'I`lp`Sl'[l.I‘€ 33 Ca1pitoll.St:?c:ot Co.nc»o·zid,, Nji~{ 033()l £}cifs.=·c:g;¤ Vin USPS Trackizaglwv. EQ 21 43{M342 US RE: §);l`otilHcaiio11 o...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 703

add details to this primary source Description
FilenameSourceResearcher Incident IDs
NC_merchant_america.pdfNorth Carolina Department of Justice, Consumer Protection Divisioncwalsh <a href='/incidents/show/1557'>1557</a>
RecordsFile DateUploadedUpdated
3237 2007-04-04 2008-12-11 23 Sep 19:06
Excerpt
703

t,/r gp r 1*w~ a / err; H o WJ J V North Carolina Security Breach Reporting Form Pursuant to the Identity Theft Protection Act of 2005 Name of Business Owning or Licensing Information Affected by the...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1153

add details to this primary source Description
Personal information of customers accessed by unauthorized hack
FilenameSourceResearcher Incident IDs
ME_03262007_merchant_america.pdfMaine Attorney Generalkirniki <a href='/incidents/show/1557'>1557</a>
RecordsFile DateUploadedUpdated
437 2007-03-23 2009-01-29 09 Feb 06:46
Excerpt
1153

CONSUMER PROT Office ofthe Attomey G€U€Y3l Eil§;;ErE)DNlS|ON State ofMaine 6 State House Station ~· ( Augusta; ME 04333 MAR 2 J Delivery Via USPS Tracking N0. EQ 214304311 US OFFICE OF ATTORNEY GEN...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 820

add details to this primary source Description
Personal information accessed by unauthorised person by hacking
FilenameSourceResearcher Incident IDs
NY_merchant_america1.pdfNew York State Consumer Protection Boardcwalsh <a href='/incidents/show/1557'>1557</a>
RecordsFile DateUploadedUpdated
6817 2007-03-22 2008-12-25 13 Feb 09:37
Excerpt
820

as/2272aav 12: ria iaesaeasess xeraesscnizx ease: at l _ . L oa ·*=;¥ “T§t,¤c»·~, ` . at ''fe Reporting Form For Business, Individual or NY State Entity reporting a "Breach ofthe Security...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1445

add details to this primary source Description
An unauthorized computer intrusion occured into one of the companies databases. The database that was accessed by an unauthorized person contained a combination of one or more of the following types of personal information about consumers who engaged in transactions with one or more of the merchants to whom they provid payment processing services: name; bank account number; and/or drivers license number.
FilenameSourceResearcher Incident IDs
2007-03-23_Merchant_America.pdfHawaii Office of Consumer Protectiond2d <a href='/incidents/show/1557'>1557</a>
RecordsFile DateUploadedUpdated
870 2007-03-23 2009-03-18 09 Apr 06:36
Excerpt
1445

. ` l {spl ,.j» ' ’ V. .*-7 ’·- [ _ . r J J. ji . :5 -/ { . State of Hawaii Department of Commerce and Consumer Affairs ATTN: Office of Consumer Protection Lciopapa A Kamehameha Building 235 S...

Click here for the Full Details | Download Raw PDF

COMMENTS

New Comment

captcha
Are you human?

Sponsored By: Credant_200x51 Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.