Menu
Browse

Cyber Incident Victim: Pro Wrestling Tees

Date:

Nov 2021

Location:

United States of America

Summary

Pro Wrestling Tees experienced a data breach compromising customers' financial details via malware, leading to theft of full names, credit card numbers, and CVV codes. Law enforcement alerted the company, which identified and removed the malware through forensic investigation, affecting approximately 31,000 individuals. Some customers incurred monetary losses from fraudulent transactions, while others had banks flag unauthorized activity. The incident prompted the offering of identity theft protection and credit monitoring services to impacted parties.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 1 motive 1 technique
Threat Actors Type Location
0 actors Available to members Available to members

Description

Pro Wrestling Tees, a popular platform for wrestling merchandise sales and fan meet-ups, disclosed a data breach impacting customer financial information in December 2021. Law enforcement notified the company on November 1, 2021, about compromised credit card details from a subset of customers. The company initiated an investigation and determined malware infected their systems, leading to the theft of full names, credit card numbers, and corresponding CVV codes. Pro Wrestling Tees engaged a forensic vendor to remediate the infection, confirming malware removal by December 15, 2021, when breach notifications were dispatched to affected individuals. The company reported the incident to the Office of the Maine Attorney General on December 22, 2021, disclosing that 31,000 customers were impacted. While Pro Wrestling Tees stated no evidence suggested broader personal information compromise beyond payment card data, the breach mechanism aligned with typical credit card skimming attacks where malicious scripts intercept checkout page transactions.

Cyber Incident Image

The stolen payment card data was actively exploited by cybercriminals, resulting in confirmed fraudulent transactions against victims. Some customers reported direct financial losses amounting to thousands of dollars, while others had transactions flagged and blocked by banking institutions. Pro Wrestling Tees offered affected individuals one year of complimentary identity theft protection and credit monitoring services through IDX. The company maintained that their systems were secured post-remediation but advised heightened vigilance among customers regarding unauthorized account activity. The breach highlighted operational risks associated with e-commerce payment processing, particularly from skimming malware designed to evade detection during online transactions.

Sources
Sources available to members
1 source