In June 2013, the California Office of the Attorney General disclosed a data breach affecting Citi Prepaid Services, specifically targeting its prepaid cardholder website. The incident occurred between June 2 and June 13, 2013, and involved a security vulnerability on the platform. While investigations suggested no unauthorized access or actual compromise of cardholder data, the exposure of the system’s weakness raised concerns about potential risks. The breach was reported as a precautionary measure, with authorities monitoring the situation closely. Although no financial or personal information was confirmed stolen, the incident highlighted gaps in the company’s cybersecurity infrastructure, particularly in safeguarding customer-facing digital services. The lack of confirmed data theft or fraudulent activity following the breach indicated that the impact was contained, but the event still necessitated regulatory scrutiny and internal reviews to prevent future vulnerabilities.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-42105
TPRM report: https://www.rankiteo.com/company/the-bancorp
"id": "the358090725",
"linkid": "the-bancorp",
"type": "Breach",
"date": "6/2013",
"severity": "25",
"impact": "1",
"explanation": "Attack without any consequences"
{'affected_entities': [{'industry': 'Banking/Financial',
'location': 'California, USA',
'name': 'Citi Prepaid Services',
'type': 'Financial Services'}],
'data_breach': {'sensitivity_of_data': 'Moderate (potential payment data)',
'type_of_data_compromised': 'Cardholder information'},
'date_detected': '2013-06-27',
'date_publicly_disclosed': '2013-06-27',
'description': 'The California Office of the Attorney General reported that '
'Citi Prepaid Services experienced a data breach affecting '
'cardholder information from June 2 to June 13, 2013. The '
'incident involved a security issue with the prepaid '
'cardholder website, and although it is believed no '
'unauthorized access occurred, the matter is under '
'investigation.',
'impact': {'data_compromised': 'Cardholder information',
'payment_information_risk': 'Potential (cardholder data)',
'systems_affected': ['Prepaid cardholder website']},
'investigation_status': 'Under investigation (as of 2013-06-27)',
'references': [{'date_accessed': '2013-06-27',
'source': 'California Office of the Attorney General'}],
'regulatory_compliance': {'regulatory_notifications': ['California Office of '
'the Attorney '
'General']},
'title': 'Citi Prepaid Services Data Breach (2013)',
'type': 'Data Breach'}