Customer information, including credit and debit card numbers, was being collected as early as March 4, the company said, adding that the malware was contained by Dec. 12.
↧