The California Office of the Attorney General reported a data breach involving Chipotle Mexican Grill, Inc. on May 26, 2017. The breach involved malware targeting payment card data at point-of-sale devices from March 24, 2017, to April 18, 2017, potentially affecting customers' cardholder names, card numbers, expiration dates, and internal verification codes. The number of individuals affected is UNKN.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-69120
TPRM report: https://www.rankiteo.com/company/chipotle-mexican-grill
"id": "chi346080425",
"linkid": "chipotle-mexican-grill",
"type": "Cyber Attack",
"date": "3/2017",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'customers_affected': 'UNKN',
'industry': 'Food and Beverage',
'location': 'Multiple Locations',
'name': 'Chipotle Mexican Grill, Inc.',
'type': 'Restaurant Chain'}],
'attack_vector': 'Malware',
'data_breach': {'number_of_records_exposed': 'UNKN',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Cardholder Names',
'Card Numbers',
'Expiration Dates',
'Internal Verification Codes']},
'date_detected': '2017-05-26',
'date_publicly_disclosed': '2017-05-26',
'description': 'The California Office of the Attorney General reported a data '
'breach involving Chipotle Mexican Grill, Inc. on May 26, '
'2017. The breach involved malware targeting payment card data '
'at point-of-sale devices from March 24, 2017, to April 18, '
"2017, potentially affecting customers' cardholder names, card "
'numbers, expiration dates, and internal verification codes. '
'The number of individuals affected is UNKN.',
'impact': {'data_compromised': ['Cardholder Names',
'Card Numbers',
'Expiration Dates',
'Internal Verification Codes'],
'payment_information_risk': 'High',
'systems_affected': 'Point-of-Sale Devices'},
'initial_access_broker': {'entry_point': 'Point-of-Sale Devices'},
'motivation': 'Financial Gain',
'references': [{'date_accessed': '2017-05-26',
'source': 'California Office of the Attorney General'}],
'title': 'Chipotle Mexican Grill Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Point-of-Sale Devices'}