HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedTargetedPIIIDENTITY_BASICLowContained
Evolve Bank & Trust
bd_769b62914ebe149a · schema v1 · pii pii-v1
Full breach record for Evolve Bank & Trust →Evolve Bank & Trust notified New Hampshire residents of a cybersecurity attack where threat actors accessed and downloaded customer information from databases and file shares in February and May 2024. The bank identified the unauthorized activity on May 29, 2024, stopped the attack, engaged a cybersecurity firm, and notified law enforcement. Affected individuals are offered TransUnion credit monitoring services.
This filing is one of 2 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_1729698eebb4ce7eIndiana State AGfiled 2024-07-08Candidate
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/evolve-bank-trust-20240708.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 8, 2024
- Raw hash
- 4fe7d1aaf8447af8fd11ac89ab3879ac87e548ca0778b26f49691557b0c8185d
Reporting entity
- Name
- Evolve Bank & Trustnorm: evolve bank
Victim entity
- Name
- Evolve Bank & Trustnorm: evolve bank
Incident
- Discovered
- May 29, 2024
- Materiality determined
- —
- Notification sent
- Jul 8, 2024
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 6 weeks(40 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.