In July 2017, the California Office of the Attorney General disclosed that Real Estate Business Services, Inc. suffered a data breach caused by malware embedded in its payment processing software. The incident occurred between March 13, 2017, and May 15, 2017, during which the malware potentially compromised personal information of customers who made purchases through the affected system. While the exact number of impacted individuals remains undetermined, the breach exposed sensitive data, raising concerns over financial fraud and identity theft risks. The malware likely intercepted payment details such as credit/debit card numbers, names, and possibly other transaction-related information during processing. The company did not specify whether the breach resulted in direct financial losses or fraudulent activity, but the exposure of payment data alone poses significant reputational and operational risks. The incident underscores vulnerabilities in third-party payment systems and the broader threat of cybercriminals exploiting software weaknesses to harvest customer data for malicious purposes.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-100138
TPRM report: https://www.rankiteo.com/company/c-a-r-business-products
"id": "c-a331091725",
"linkid": "c-a-r-business-products",
"type": "Breach",
"date": "3/2017",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Unknown (purchases made between '
'March 13, 2017, and May 15, '
'2017)',
'industry': 'Real Estate',
'location': 'California, USA',
'name': 'Real Estate Business Services, Inc.',
'type': 'Corporation'}],
'attack_vector': 'Malware in payment processing software',
'data_breach': {'number_of_records_exposed': 'Unknown',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High (personal information)',
'type_of_data_compromised': 'Personal information'},
'date_publicly_disclosed': '2017-07-07',
'description': 'The California Office of the Attorney General reported that '
'Real Estate Business Services, Inc. experienced a data breach '
'involving malware in payment processing software. The breach '
'potentially exposed personal information from purchases made '
'between March 13, 2017, and May 15, 2017; however, the exact '
'number of individuals affected is unknown.',
'impact': {'data_compromised': 'Personal information from purchases',
'identity_theft_risk': 'Potential (personal information exposed)',
'payment_information_risk': 'Potential (purchases made between '
'March 13, 2017, and May 15, 2017)',
'systems_affected': ['Payment processing software']},
'references': [{'date_accessed': '2017-07-07',
'source': 'California Office of the Attorney General'}],
'regulatory_compliance': {'regulatory_notifications': 'California Office of '
'the Attorney General'},
'response': {'communication_strategy': 'Reported by California Office of the '
'Attorney General'},
'title': 'Data Breach at Real Estate Business Services, Inc. Due to Malware '
'in Payment Processing Software',
'type': 'Data Breach (Malware)'}