PlainsCapital Bank
bd_6a16364945d087db · schema v1 · pii pii-v1
Full breach record for PlainsCapital Bank →2 incidents on filePlainsCapital Bank notified customers that a third-party vendor using MOVEit file transfer software was impacted by a global zero-day cyberattack between May 27 and May 31, 2023. The bank discovered the exposure on June 27, 2023. Customer data, including names, addresses, and potentially Social Security numbers and financial account information, was likely obtained by an unauthorized party. The bank is offering 12 months of credit monitoring and identity restoration services.
J jump to incidentP pin to compareR raw source
Incident timeline
May 27, 2023
Begins
Jun 27, 2023
Discovered
Jul 14, 2023
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- Montana State AGbd_d0fa7306adbe4d642023-07-14Verified
- Massachusetts State AGbd_d9af88ecfff56b232023-07-14Verified
- SEC 8-Kbd_651ddcbce2bbcb282023-07-03 · +11dVerified
Filing propagation · 4 filings · 3 states
View merged incident ↗Pattern: first filing Jul 3, last Jul 14 (CA) — a 11-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.