Condé Nast notified about 1,100 WIRED subscribers of a breach involving their payment information.
They stated that an unauthorized party accessed their vendor’s systems in an attempt to acquire information.
The compromised information includes names, postal and email addresses, credit/debit card numbers, security codes, and card expiration dates.
TPRM report: https://scoringcyber.rankiteo.com/company/conde-nast
"id": "con202224323",
"linkid": "conde-nast",
"type": "Breach",
"date": "05/2019",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 1100,
'industry': 'Media',
'name': 'Condé Nast',
'type': 'Company'}],
'attack_vector': 'Unauthorized Access',
'customer_advisories': 'Notification to Subscribers',
'data_breach': {'number_of_records_exposed': 1100,
'personally_identifiable_information': ['names',
'postal and email '
'addresses'],
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['personal information',
'payment information']},
'description': 'Condé Nast notified about 1,100 WIRED subscribers of a breach '
'involving their payment information. An unauthorized party '
'accessed their vendor’s systems in an attempt to acquire '
'information. The compromised information includes names, '
'postal and email addresses, credit/debit card numbers, '
'security codes, and card expiration dates.',
'impact': {'data_compromised': ['names',
'postal and email addresses',
'credit/debit card numbers',
'security codes',
'card expiration dates'],
'payment_information_risk': 'High'},
'initial_access_broker': {'entry_point': "Vendor's Systems"},
'motivation': 'Data Theft',
'response': {'communication_strategy': 'Subscriber Notification'},
'threat_actor': 'Unauthorized Party',
'title': 'Condé Nast Data Breach',
'type': 'Data Breach'}