CSIDB logo
Threat actor

Inception

Attribution profile

Type
Criminal
Location
United States of America
Known incidents
1 incident
First seen
2015-10-01
Last seen
2015-10-01
Updated
2026-07-14 11:26
Aliases
1 alias

STIX characteristics

Threat actor characteristics are available to members.

Profile narrative

Inceptionis an alias used by a threat actor whose known location is the United States of America. The actor came to public attention in October 2015 when Wendy's initiated an investigation into reports of a credit card breach. The breach involved fraudulent charges that appeared after legitimate transactions at certain restaurant locations. Wendy's engaged a cybersecurity firm to assess the incident, which affected an undetermined number of primarily franchised U.S. locations. Financial institutions across multiple regions reported compromised payment cards linked to the activity. At the time of reporting, the investigation's scope and containment status remained unclear.

No specific malware families, initial access vectors, or tooling styles have been publicly attributed to Inception in connection with this incident. Consequently, details about the actor's typical technical procedures remain unavailable in open sources. Publicly available information does not establish any state nexus or criminal consortium affiliation for Inception. As a result, the Wendy's breach stands as the sole publicly reported operation linked to the alias. Without additional verified incidents, any broader characterization of the actor's targeting patterns or strategic objectives would be speculative. Therefore, the profile is limited to the confirmed facts surrounding the 2015 Wendy's credit card breach investigation.

Incidents

Attributed incidents are available to members.

1 incident
CSIDB