DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Heartland Payment Systems reports another breach (UPDATED)

Posted on May 28, 2015 by Dissent

Update: Heartland responded to this post with a statement. See the Comments section for their statement.

Heartland Payment Systems, Inc. (“Heartland”), who made news when they disclosed a huge breach on President Obama’s first inauguration day, has reported another breach. This one appears to involve Heartland Payroll Solutions, Inc. 

In a letter to those affected, Heartland writes that it was notified on May 8, 2015 that personal information may have been compromised when many items, including password-protected computers, were stolen from its Santa Ana, California office.

Data on the stolen computers may have included  Social Security numbers and/or bank account information processed for individuals’ employers.

The letter states:

We have seen no evidence suggesting that the data has been accessed on the stolen computers or used in any way, and we have no reason to believe any such use will occur.

Those being notified are being offered services provided by Kroll.


Related:

  • ModMed revealed they were victims of a cyberattack in July. Then some data showed up for sale.
  • Protected health information of 462,000 members of Blue Cross Blue Shield of Montana involved in Conduent data breach
  • Resource: NY DFS Issues New Cybersecurity Guidance to Address Risks Associated with the Use of Third-Party Service Providers
  • TX: Kaufman County Faces Cybersecurity Attack: Courthouse Computer Operations Disrupted
  • Attorney General James Announces Settlement with Wojeski & Company Accounting Firm
  • JFL Lost Up to $800,000 Weekly After Cyberattack, CEO Says No Patient or Staff Data Was Compromised
Category: Financial SectorTheftU.S.

Post navigation

← United Recovery Group notifying patients of HIPAA privacy breach (updated)
TX: Blue Goose Cantina Linked to Credit Card Theft →

1 thought on “Heartland Payment Systems reports another breach (UPDATED)”

  1. Chandra Hayslett says:
    June 1, 2015 at 7:00 pm

    HEARTLAND RESPONDS TO BURGLARY OF PAYROLL OFFICE IN SANTA ANA
    SANTA ANA, Calif., June 1, 2015 – Heartland said today it was notified of a burglary that took place at the Heartland Payroll office in Santa Ana, Calif. The payroll office, formerly Ovation Payroll, is in the process of being integrated into Heartland’s information security and physical security systems and processes. Among the items stolen were TVs, LCD panels and 11 password-protected desktop computers. Of these 11 computers, Heartland suspects that four computers contained personally identifiable information (PII).
    The four computers were not connected to any other Heartland office, business, system or server, but may have contained PII on some of the individuals serviced from that payroll office. Heartland has notified local, state and federal authorities and has also personally alerted approximately 2,200 individuals that their personal information may have been affected by the burglary.
    In addition, the company has put an aggressive system in place to monitor for any malicious activity on the personal accounts of those impacted. To date, there is no indication that any of this information has been accessed or used in a fraudulent manner or that the thieves intended to access the information. Regardless, we take this incident seriously.
    As part of our ongoing commitment to security, Heartland has already encrypted most computers, and as we integrate acquisitions, Heartland is actively working to encrypt any remaining computers in every office that may have access to, or house, PII or payment data. Security has been, and will continue to be, the foundation of everything we do at Heartland. We deeply regret this incident and apologize for any inconvenience this may have caused.
    About Heartland
    Heartland Payment Systems, Inc. (NYSE: HPY), one of the largest payment processors in the United States, delivers credit/debit/prepaid card processing and security technology through Heartland Secure™ and its comprehensive Heartland breach warranty. Heartland also offers point of sale, mobile commerce, e-Commerce, marketing solutions, payroll solutions, and related business solutions and services to more than 400,000 business and educational locations nationwide.

    A FORTUNE 1000 company, Heartland is the founding supporter of Merchant Bill of Rights, a public advocacy initiative that educates merchants about fair credit and debit card processing practices. Heartland also established Sales Professional Bill of Rights to advocate for the rights of sales professionals everywhere.

    # # #
    For more information, contact:
    Kevin Petschow Chandra Hayslett
    Heartland G&S Business Communications
    +1.312.205.1607 +1.212.297.2600, ext. 1267
    [email protected] [email protected]

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • District of Massachusetts Allows Higher-Ed Student Data Breach Claims to Survive
  • End of the game for cybercrime infrastructure: 1025 servers taken down
  • Doctor Alliance Data Breach: 353GB of Patient Files Allegedly Compromised, Ransom Demanded
  • St. Thomas Brushed Off Red Flags Before Dark-Web Data Dump Rocks Houston
  • A Wiltshire police breach posed possible safety concerns for violent crime victims as well as prison officers
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Almost two years later, Alpha Omega Winery notifies those affected by a data breach.
  • Court of Appeal reaffirms MFSA liability in data leak case, orders regulator to shoulder costs
  • A jailed hacking kingpin reveals all about the gang that left a trail of destruction
  • Army gynecologist took secret videos of patients during intimate exams, lawsuit says

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • As shoplifting surges, British retailers roll out ‘invasive’ facial recognition tools
  • Data broker Kochava agrees to change business practices to settle lawsuit
  • Amendment 13 is gamechanger on data security enforcement in Israel
  • Changes in the Rules for Disclosure for Substance Use Disorder Treatment Records: 42 CFR Part 2: What Changed, Why It Matters, and How It Aligns with HIPAAs
  • Always watching: How ICE’s plan to monitor social media 24/7 threatens privacy and civic participation

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net
Security Issue: security[at]databreaches.net
Mastodon: Infosec.Exchange/@PogoWasRight
Signal: +1 516-776-7756
DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.