Q: What stores were affected?
From information we have at this time, we believe that Albertsons stores in the following states may have had an unauthorized access to credit and debit card payment data:
California, Idaho, Montana, North Dakota, Nevada, Oregon, Southern Utah, Washington and Wyoming.
Not all of our stores were affected. Albertsons stores in the following states were not impacted:
Arizona, Arkansas, Colorado, Florida, Louisiana, New Mexico, Texas and Northern Utah.
From information we have at this time, we do not believe that any customer data was taken. However, out of an abundance of caution, if you used your credit or debit card in our stores between June 22, 2014 and July 17, 2014 you should monitor your credit and debit card account and contact the bank that issued your payment card immediately if you see suspicious activity.
UPDATE: September 29, 2014
Based on the information we currently know, it is not believed that any customer data was stolen. However, out of an abundance of caution, if you used your credit or debit card in a potentially affected store between June 22, 2014 and July 17, 2014 or between August 27, 2014 and September 21, 2014, you should monitor your credit and debit card account and promptly contact the bank that issued your payment card if you see suspicious activity. Stores within the following areas were potentially affected: Southern California, Idaho, Montana, Nevada, North Dakota, Oregon, Southern Utah, Washington and Wyoming.
Q: When did this event happen and what did you do about it?
Based on our current investigation, it appears that the unauthorized access may have started as early as June 22, 2014 in our stores, and action was taken to contain the incident July 17, 2014. The appropriate federal authorities have been notified. We are working closely with our IT services provider, SUPERVALU. Third-party forensics experts are supporting an ongoing investigation. From information we have at this time, we do not believe that any customer data was taken.
UPDATE: September 29, 2014
We recently learned from our IT services provider, SUPERVALU, that it appears a criminal intruder installed different malware on payment card systems in late August or early September 2014. The investigation into these events is ongoing. From information we have at this time, there has been no determination that any customer data was stolen as a result of either incident.
Measures have been taken to prevent further use of this new and different malware in the affected store locations. We are also implementing additional measures to enhance the protection of customer payment card data.
940 replies | 30122 view(s)









Bookmarks