DisclosureLens
HackingFinancial ServicesFinanceEmployee Data InvolvedCredentialsLowContained

Bank of the West

bd_2da3bfcafcf75366 · schema v1 · pii pii-v1

Severity

Low

Discovered

Dec 19, 2013

Filed

Feb 5, 2014

To disclose

7 weeks

Affected

Not disclosed

Linked

3 filings

Confidence

65%
Full breach record for Bank of the West10 incidents on file

Bank of the West discovered on December 19, 2013, that a retired internet job application server had been illegally accessed. Unauthorized users may have obtained user names and passwords created to access the site. The bank secured the servers, established additional security measures, and cooperated with law enforcement. Affected individuals were offered one year of free identity monitoring.

California clockDiscovered Dec 19, 2013Notified Feb 6, 201449d CA 60-day OK7 weeks discovery → filing

Incident timeline

discovery → filing · 7 weeks / 48 days

Dec 19, 2013

Discovered

Feb 5, 2014

Filed

vs. sector median

2 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
California State AGFeb 5 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.