Heritage South Credit Union
bd_736da1c01edd30b6 · schema v1 · pii pii-v1
Full breach record for Heritage South Credit Union →Threat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Embargo on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Heritage South Credit Union was originally chartered in 1937 as the Avondale Employees Federal Credit Union. After many years and a couple of name changes, Heritage South Credit Union continues to have a strong presence in Sylacauga, Childersburg, Moody, and Alexander City as a fixture in the community and as a stable and secure financial institution. Heritage South Credit Union has grown to over $160 million in assets and over 14,000+ members. - 300 GB data including: - debit card numbers - account numbers - SSN - address - phone - email - DOB - current balances - debts - loans - insurance Here's data for CEO: JAMIE MCCAA PAYTON 3993 ODENS MILL RD SYLACAUGA AL 35151 DOB: 1969-11-18 SSN: 423-04-5662 Phone: 256-872-2885|256-245-0777 Email: jpayton@myhscu.com|cedarcreekcowboychurch@yahoo.com|jamie.hscu@gmail.com SPOUSE: CHRIS PAYTON (416-82-5751 1967-12-01)
Linked disclosures
Why this link?Ransomware claims (1)
- bd_352c41f3a4c5524aLeak Siteembargofiled 2025-02-14(1d gap)Candidate
Regulatory filings (1) · sorted by filing gap
- bd_996422d1804d5880Montana State AGfiled 2025-03-21(35d gap)Verified by operator
Source provenance
- Source URL
- https://www.ransomware.live/
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Feb 14, 2025
- Raw hash
- 8b5774e3efc910e40934c88032e23d0190e5624bf92a645f05499426308cd76a
Reporting entity
- Name
- embargo
Victim entity
- Name
- Heritage South Credit Unionnorm: heritage south credit union
- Domain
- myhscu.com
- Industry
- Financial Services
What this source establishes
- Source ceiling
- A leak-site claim can't tell us: discovery date · materiality · notification · affected count · confirmed data types · compliance clock. These stay blank until a regulatory filing or victim disclosure lands.
- Attack vector
- Ransomware· embargo
- Threat actor
- EmbargoExternalFinancial
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.