On May 15, 2017, the California Office of the Attorney General reported that KURU Footwear experienced a data breach potentially affecting debit and credit card information used on its website between December 20, 2016, and March 3, 2017. The breach was discovered on February 23, 2017, and included data such as cardholder names, addresses, card numbers, expiration dates, and CVV codes.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-68866
TPRM report: https://www.rankiteo.com/company/kuru-footwear
"id": "kur201080425",
"linkid": "kuru-footwear",
"type": "Breach",
"date": "12/2016",
"severity": "60",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Footwear',
'name': 'KURU Footwear',
'type': 'Company'}],
'data_breach': {'data_exfiltration': True,
'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['cardholder names',
'addresses',
'card numbers',
'expiration dates',
'CVV codes']},
'date_detected': '2017-02-23',
'date_publicly_disclosed': '2017-05-15',
'description': 'A data breach at KURU Footwear potentially affected debit and '
'credit card information used on its website between December '
'20, 2016, and March 3, 2017.',
'impact': {'data_compromised': ['cardholder names',
'addresses',
'card numbers',
'expiration dates',
'CVV codes'],
'payment_information_risk': True},
'references': [{'date_accessed': '2017-05-15',
'source': 'California Office of the Attorney General'}],
'title': 'KURU Footwear Data Breach',
'type': 'Data Breach'}