Financial Institution Service Corporation
bd_4a83bdbad5aeec58 · schema v1 · pii pii-v1
Full breach record for Financial Institution Service Corporation →10 incidents on fileFinancial Institution Service Corporation (FISC) disclosed a data breach resulting from the exploitation of zero-day vulnerabilities in the MOVEit Transfer tool provided by Progress Software Corp. An unknown actor accessed the server between May 30 and May 31, 2023, and exfiltrated data including names, addresses, dates of birth, Social Security numbers, driver's license numbers, and financial account information. FISC applied patches, engaged third-party cybersecurity specialists, notified federal law enforcement, and offered 12 months of identity monitoring via Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
May 30, 2023
Begins
Sep 22, 2023
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Indiana State AGbd_267310e2d32558712023-09-22Verified
- Oregon State AGbd_e8d9465614e4a1272023-09-22Candidate
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.