The California Office of the Attorney General reported a data breach involving McAlister’s Corporation, Moe’s Stores LLC, and Schlotzsky’s Stores LLC on October 2, 2019. The breach occurred between April 11, 2019, and July 22, 2019, due to unauthorized code that copied payment card data at various corporate and franchised locations. The specific number of affected individuals is unknown, but the compromised information may include card numbers, expiration dates, and verification codes.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-183110
TPRM report: https://scoringcyber.rankiteo.com/company/gotofoods
"id": "got1042072525",
"linkid": "gotofoods",
"type": "Breach",
"date": "4/2019",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Food and Beverage',
'name': 'McAlister’s Corporation',
'type': 'Corporation'},
{'industry': 'Food and Beverage',
'name': 'Moe’s Stores LLC',
'type': 'LLC'},
{'industry': 'Food and Beverage',
'name': 'Schlotzsky’s Stores LLC',
'type': 'LLC'}],
'attack_vector': 'Unauthorized code',
'data_breach': {'data_exfiltration': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['card numbers',
'expiration dates',
'verification codes']},
'date_detected': '2019-10-02',
'date_publicly_disclosed': '2019-10-02',
'description': 'The California Office of the Attorney General reported a data '
'breach involving McAlister’s Corporation, Moe’s Stores LLC, '
'and Schlotzsky’s Stores LLC on October 2, 2019. The breach '
'occurred between April 11, 2019, and July 22, 2019, due to '
'unauthorized code that copied payment card data at various '
'corporate and franchised locations. The specific number of '
'affected individuals is unknown, but the compromised '
'information may include card numbers, expiration dates, and '
'verification codes.',
'impact': {'data_compromised': ['card numbers',
'expiration dates',
'verification codes'],
'payment_information_risk': True},
'references': [{'date_accessed': '2019-10-02',
'source': 'California Office of the Attorney General'}],
'title': 'Data Breach at McAlister’s Corporation, Moe’s Stores LLC, and '
'Schlotzsky’s Stores LLC',
'type': 'Data Breach',
'vulnerability_exploited': 'Payment card data copying'}