This incident has 0 proposed changes. Know of details that have changed? Submit them Showing Incident 2072 To_xml

SUMMARY

Unauthorized copies of customers credit cards were emailed to an outside account
Records 5,258
Record Types CCN NAA
Breach Type Fraud Se
Data Family Unknown
Source Inside - Malicious
Organization Sony Card Marketing & Services Company (Sony Reward Program)
Other Affected/Involved Organizations Sony Corporation of America
Lawsuit? NO/UNKNOWN
Data Recovered? NO/UNKNOWN
Arrest? NO/UNKNOWN
Submitted By: kirniki

TIMELINE

DateEvent
2009-02-01 Incident Occurred
2009-05-13 Incident Discovered By Organization
2009-05-28 Organization Reports Incident
2009-06-01 Organization Mails Notifications
None. Add Data Records Recovered
None. Add Data Lawsuit Filed
None. Add Data Arrest Made

SIMILAR INCIDENTS

recordsdateorganizations
8,000 2006-05-18 American Red Cross
3,448 2008-09-25 AmeriCredit Financial Services, Inc.
3,990 2009-02-02 Best Buy
5,400 2008-12-19 Norfolk Southern Corp., Imaging Solutions & Services Inc.

MAP OF INCIDENT LOCATION

Address: Sony Dr, Park Ridge, NJ 07656, USA
Have a better address for this incident? Suggest it!

suggest a new reference

REFERENCES

suggest a new attachment

ATTACHMENTS

COSTS SUMMARY

Known Actual Costs

No known costs for this incident.

Estimated Costs

Ponemon Institute Direct Costs Estimate 1 $315,480.00
  1. Note that these estimates are based on the Ponemon Institute's 2009 direct costs figures from their 2009 Annual Study: Cost of a Data Breach. We multiply $60.00 by the number of records to obtain this figure. Keep in mind that depending on the breach, the direct costs are not always suffered by the breached organizations. In the case of credit card number breaches, the direct costs can often be suffered by banks and card issuers. Also note that this is only an estimate.

PRIMARY SOURCES

Primary Source ID: 1763

add details to this primary source Description
New Hampshire breach notification - Sony Corp of American - Sony Rewards program - notifying that unauthorized copies of customers credit cards, showing names and expiration dates were emailed to an external address. 16 New Hampshire residents affected. Unknown total affected.
FilenameSourceResearcher Incident IDs
sony.pdfNew Hampshire Consumer Protection & Antitrust Bureaukirniki <a href='/incidents/show/2072'>2072</a>
RecordsFile DateUploadedUpdated
16 2009-05-28 2009-06-02 25 Jun 22:07
Excerpt
1763

· · . **¢=E¤—31< 15 iszjsgjigs. Ntjritr .-L¤>.=·=·z:;=.=·y £E='Pi5;‘E-?E¢- 303 ```’```...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 1990

add details to this primary source Description
Maryland Data Breach Notification : Copies of credit card information was sent via email to unauthorised persons.
FilenameSourceResearcher Incident IDs
ITU-172573.pdfMaryland Attorney Generalkirniki <a href='/incidents/show/2072'>2072</a>
RecordsFile DateUploadedUpdated
121 2009-05-29 2009-08-08 24 Sep 11:08
Excerpt
1990

John Briesch ` Sony Corporation of America President, Card Marketing & Services Company S G _ 1 S°‘”'V Drive l » Park Ridge, New Jersey 07656-8003 Telephone (201) 930-6230 ‘ . Fax (201) 930-7125 ,...

Click here for the Full Details | Download Raw PDF

Primary Source ID: 2750

add details to this primary source Description
Massachusetts Data Breach Notification : Copies of credit card information was sent via email to unauthorized persons.
FilenameSourceResearcher Incident IDs
20090601-sony-MA.pdfMassachusetts Attorney Generald2d <a href='/incidents/show/2072'>2072</a>
RecordsFile DateUploadedUpdated
140 2009-06-01 2010-04-27 02 Jun 07:28
Excerpt
2750

John grresch Sony Corporation of America President, Card Marketing & Services Company S Park Ridg€·:s·?{“}€?;`;‘;?67656-8003 Telephone (201} 939-6230 tax (201) ssornzs . ‘ _ . E-mail: John.Briesch...

Click here for the Full Details | Download Raw PDF

COMMENTS

New Comment

captcha
Are you human?

Sponsored By: Rbs Tenable Zecurion
Use of the DataLossDB, and its exports, RSS feeds, reports, or other materials produced on this site by the Open Security Foundation requires authorization and potential licensing arrangements. For more information, please e-mail officers@opensecurityfoundation.org with a brief summary of how you would like to use this information; product, service, research, etc.
© 2005 - 2012, Open Security Foundation, All Rights Reserved.