WooThemes, a provider of WordPress themes notified about 300 customers of payment card fraud.
It discovered the incident after three modified files were discovered on its server with which the payment card data may have been intercepted during the checkout process.
Source: https://www.databreaches.net/woothemes-users-notified-of-payment-card-breach-300-reports-of-fraud/
TPRM report: https://scoringcyber.rankiteo.com/company/woothemes
"id": "woo2204123",
"linkid": "woothemes",
"type": "Breach",
"date": "05/2014",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 300,
'industry': 'Technology',
'name': 'WooThemes',
'type': 'Business'}],
'attack_vector': 'Server Compromise',
'data_breach': {'data_exfiltration': 'Potential',
'number_of_records_exposed': 300,
'sensitivity_of_data': 'High',
'type_of_data_compromised': 'Payment Card Data'},
'description': 'WooThemes, a provider of WordPress themes, notified about 300 '
'customers of payment card fraud. It discovered the incident '
'after three modified files were discovered on its server with '
'which the payment card data may have been intercepted during '
'the checkout process.',
'impact': {'data_compromised': ['Payment Card Data'],
'payment_information_risk': 'High',
'systems_affected': ['Server']},
'motivation': 'Financial Gain',
'response': {'communication_strategy': 'Customer Notification'},
'title': 'WooThemes Payment Card Fraud Incident',
'type': 'Data Breach',
'vulnerability_exploited': 'Modified Files on Server'}