The California Office of the Attorney General reported on February 28, 2019, that ShareThis, Inc. experienced a data breach likely occurring in July 2018. The breach involved unauthorized access to names, email addresses, hashed passwords, and some birth dates of an unknown number of California residents, following a report by The Register indicating that the affected data was posted for sale on the dark web.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-145099
TPRM report: https://scoringcyber.rankiteo.com/company/sharethis
"id": "sha130072725",
"linkid": "sharethis",
"type": "Breach",
"date": "7/2018",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Unknown number of California '
'residents',
'industry': 'Technology',
'location': 'California',
'name': 'ShareThis, Inc.',
'type': 'Company'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'data_exfiltration': True,
'personally_identifiable_information': True,
'sensitivity_of_data': 'Medium',
'type_of_data_compromised': ['Names',
'Email Addresses',
'Hashed Passwords',
'Birth Dates']},
'date_detected': '2019-02-28',
'date_publicly_disclosed': '2019-02-28',
'description': 'The California Office of the Attorney General reported on '
'February 28, 2019, that ShareThis, Inc. experienced a data '
'breach likely occurring in July 2018. The breach involved '
'unauthorized access to names, email addresses, hashed '
'passwords, and some birth dates of an unknown number of '
'California residents, following a report by The Register '
'indicating that the affected data was posted for sale on the '
'dark web.',
'impact': {'data_compromised': ['Names',
'Email Addresses',
'Hashed Passwords',
'Birth Dates']},
'initial_access_broker': {'data_sold_on_dark_web': True},
'motivation': 'Financial Gain',
'references': [{'source': 'The Register'}],
'title': 'ShareThis, Inc. Data Breach',
'type': 'Data Breach'}