Customers of The Wash Tub are being informed of an incident involving a possible data breach that has just been discovered and dealt with.
Recent suspicious activity on credit cards used at multiple Wash Tub locations was reported to The Wash Tub.
The Wash Tub engaged a private forensic investigative company.
An unidentified third party was able to obtain cardholder data thanks to malicious software that was discovered during the investigation.
Since then, harmful malware has been eliminated, and other security measures, including payment terminal upgrades, have been implemented.
Source: https://www.databreaches.net/the-wash-tub-is-notifying-customers-of-a-year-long-payment-card-breach/
TPRM report: https://scoringcyber.rankiteo.com/company/vizza-wash-lp
"id": "viz24718623",
"linkid": "vizza-wash-lp",
"type": "Breach",
"date": "11/2020",
"severity": "50",
"impact": "2",
"explanation": "Attack limited on finance or reputation"
{'affected_entities': [{'industry': 'Retail',
'name': 'The Wash Tub',
'type': 'Business'}],
'attack_vector': 'Malicious Software',
'data_breach': {'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Cardholder Data'},
'description': 'Customers of The Wash Tub are being informed of an incident '
'involving a possible data breach that has just been '
'discovered and dealt with. Recent suspicious activity on '
'credit cards used at multiple Wash Tub locations was reported '
'to The Wash Tub. The Wash Tub engaged a private forensic '
'investigative company. An unidentified third party was able '
'to obtain cardholder data thanks to malicious software that '
'was discovered during the investigation. Since then, harmful '
'malware has been eliminated, and other security measures, '
'including payment terminal upgrades, have been implemented.',
'impact': {'data_compromised': 'Cardholder Data',
'payment_information_risk': 'High',
'systems_affected': ['Payment Terminals']},
'response': {'communication_strategy': 'Informing customers',
'containment_measures': 'Elimination of harmful malware',
'remediation_measures': 'Payment terminal upgrades',
'third_party_assistance': 'Private forensic investigative '
'company'},
'threat_actor': 'Unidentified third party',
'title': 'Credit Card Data Breach at The Wash Tub',
'type': 'Data Breach'}