The California Office of the Attorney General reported that American Golf Corporation experienced a data breach affecting potentially compromised payment card information of individuals who made purchases on Golfzing.com between December 12, 2017, and December 15, 2017. The breach involved unauthorized access leading to the installation of malicious software on the website's servers. Approximately the affected information includes names, addresses, phone numbers, email addresses, payment card account numbers, expiration dates, and verification codes, but no sensitive information like Social Security numbers was involved. The breach was reported on January 18, 2018.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-132928
TPRM report: https://www.rankiteo.com/company/american-golf-corporation
"id": "ame321072625",
"linkid": "american-golf-corporation",
"type": "Breach",
"date": "12/2017",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Golf and Recreation',
'name': 'American Golf Corporation',
'type': 'Corporation'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'Medium',
'type_of_data_compromised': ['names',
'addresses',
'phone numbers',
'email addresses',
'payment card account numbers',
'expiration dates',
'verification codes']},
'date_publicly_disclosed': '2018-01-18',
'description': 'The California Office of the Attorney General reported that '
'American Golf Corporation experienced a data breach affecting '
'potentially compromised payment card information of '
'individuals who made purchases on Golfzing.com between '
'December 12, 2017, and December 15, 2017. The breach involved '
'unauthorized access leading to the installation of malicious '
"software on the website's servers. Approximately the affected "
'information includes names, addresses, phone numbers, email '
'addresses, payment card account numbers, expiration dates, '
'and verification codes, but no sensitive information like '
'Social Security numbers was involved. The breach was reported '
'on January 18, 2018.',
'impact': {'data_compromised': ['names',
'addresses',
'phone numbers',
'email addresses',
'payment card account numbers',
'expiration dates',
'verification codes'],
'payment_information_risk': True,
'systems_affected': ['Golfzing.com servers']},
'references': [{'source': 'California Office of the Attorney General'}],
'title': 'American Golf Corporation Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Malicious Software Installation'}