The California Office of the Attorney General reported a data breach involving Hudson’s Bay Company on April 27, 2018. The breach, attributed to malware that affected point of sale systems at Saks Fifth Avenue, Saks OFF 5TH, and Lord & Taylor locations, compromised payment card information including cardholder names, numbers, and expiration dates, though no evidence was found indicating that other sensitive personal information was affected.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-135712
TPRM report: https://www.rankiteo.com/company/hudsonsbaycompany
"id": "hud802072625",
"linkid": "hudsonsbaycompany",
"type": "Cyber Attack",
"date": "7/2017",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Retail',
'name': 'Hudson’s Bay Company',
'type': 'Retail'},
{'industry': 'Retail',
'name': 'Saks Fifth Avenue',
'type': 'Retail'},
{'industry': 'Retail',
'name': 'Saks OFF 5TH',
'type': 'Retail'},
{'industry': 'Retail',
'name': 'Lord & Taylor',
'type': 'Retail'}],
'attack_vector': 'Malware',
'data_breach': {'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Payment card information',
'Cardholder names',
'Card numbers',
'Expiration dates']},
'date_detected': '2018-04-27',
'date_publicly_disclosed': '2018-04-27',
'description': 'The California Office of the Attorney General reported a data '
'breach involving Hudson’s Bay Company on April 27, 2018. The '
'breach, attributed to malware that affected point of sale '
'systems at Saks Fifth Avenue, Saks OFF 5TH, and Lord & Taylor '
'locations, compromised payment card information including '
'cardholder names, numbers, and expiration dates, though no '
'evidence was found indicating that other sensitive personal '
'information was affected.',
'impact': {'data_compromised': ['Payment card information',
'Cardholder names',
'Card numbers',
'Expiration dates'],
'payment_information_risk': True,
'systems_affected': ['Point of Sale Systems']},
'references': [{'date_accessed': '2018-04-27',
'source': 'California Office of the Attorney General'}],
'title': 'Hudson’s Bay Company Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Point of Sale Systems'}