Bank of America, National Association
bd_5279e54d12044a1e · schema v1 · pii pii-v1
Full breach record for Bank of America, National Association →3 incidents on fileInfosys McCamish Systems LLC (IMS), a third-party vendor for Bank of America, experienced a cybersecurity event on or around Nov 3, 2023. IMS disclosed to Bank of America on Nov 24, 2023 that deferred compensation plan data may have been compromised. 160 NH residents' financial account info and PII were potentially exposed. IMS engaged forensic investigators and contained the threat. Bank of America is notifying affected individuals and offering credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Nov 3, 2023
Begins
Nov 24, 2023
Discovered
Feb 2, 2024
Filed
vs. sector median
+2 wks slower
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.