MFA FINANCIAL, INC.
bd_3d0f6290fb557c9c · schema v1 · pii pii-v1
Full breach record for MFA FINANCIAL, INC. →2 incidents on fileMFA Financial, Inc. suffered a cybersecurity incident in its legacy environment. Between February 12, 2021, and March 10, 2021, an unauthorized party accessed and removed data from a file server. The incident affected personal information of employees, contractors, and mortgage loan owners. Data exposed included names, addresses, Social Security numbers, financial account details, and health insurance IDs. MFA engaged forensic investigators, notified law enforcement, and offered two years of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 12, 2021
Begins
Mar 10, 2021
Discovered
Sep 1, 2021
Filed
vs. sector median
+16 wks slower
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Maine State AGbd_37dc58d5b56ea2c52021-09-01Candidate
- Montana State AGbd_700c956799a87ece2021-09-01Candidate
- Indiana State AGbd_b8c682cfed093f5d2021-09-01Verified
Filing propagation · 4 filings · 4 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.