River City Bank, Inc.
bd_1e5cabd0f65b2b87 · schema v1 · pii pii-v1
Full breach record for River City Bank, Inc. →River City Bank disclosed an insider threat incident where an employee exceeded authorized access, downloading customer data to a personal drive and sending it to a third party. The bank discovered the unauthorized activity on September 29, 2020, immediately restricted the employee's access, and reported the incident to law enforcement. A forensic investigation was conducted. Affected individuals were offered two years of complimentary identity monitoring services through Kroll. The bank is implementing additional security measures and employee training to prevent recurrence.
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_01b6e71c40f1563fMaine State AGfiled 2020-11-20Candidate
- bd_7743644ed47174dcMontana State AGfiled 2020-11-20Verified
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-196385
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 20, 2020
- Raw hash
- dd74ec15f133a364365edba8ea3fb797a999a874a39f29dcb66edd2ed23299ae
Reporting entity
- Name
- River City Bank, Inc.norm: river city bank
Victim entity
- Name
- River City Bank, Inc.norm: river city bank
Incident
- Discovered
- Sep 29, 2020
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASICFINANCIAL_ACCOUNT
- Attack vector
- Insider
- MITRE ATT&CK
- T1078 Valid AccountsT1530 Data from Cloud Storage Object
- Threat actor
- Internal
- Regulator citations
- Reported the incident to law enforcement
- Initial access
- insider_action
Compliance
- Time to disclose
- 7 weeks(52 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.