Chevron Federal Credit Union
bd_516ce6f1fa331ab4 · schema v1 · pii pii-v1
Full breach record for Chevron Federal Credit Union →2 incidents on fileChevron Federal Credit Union experienced a data breach involving the MOVEit file transfer service provided by Progress Software. An unauthorized party exploited a previously unknown vulnerability (zero-day) in the MOVEit application to decrypt and download files between May 30 and May 31, 2023. The incident was discovered on August 1, 2023, after new detection methods were published. Personal information, including basic identity data, was compromised. The organization engaged third-party forensics, remediated the vulnerability, and offered one year of credit monitoring to affected members.
J jump to incidentP pin to compareR raw source
Incident timeline
May 30, 2023
Begins
Aug 1, 2023
Discovered
Aug 24, 2023
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Ransomware claims (1)
- Leak Sitecl0pbd_1e89fdb7a2e766602023-07-26 · +29dVerified by operator
Regulatory filings (5) · sorted by filing gap
- Oregon State AGbd_1b66e5dcd4aa08ad2023-08-24Verified by operator
- Montana State AGbd_44e6af40c606522b2023-08-24Verified
- Massachusetts State AGbd_71a846f6a02d64ff2023-08-24Verified by operator
- Washington State AGbd_ac9885f89e17ab0a2023-08-24Verified
Show 1 more filing ↓Show fewer ↑up to 5d gap
- Maine State AGbd_7b2fa1a1171856ff2023-08-29 · +5dVerified
Filing propagation · 6 filings · 6 states
View merged incident ↗Pattern: first filing Aug 24 (OR), last Aug 29 (ME) — a 5-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.