First Merchants Bank
bd_7bda41589ab25a73 · schema v1 · pii pii-v1
Full breach record for First Merchants Bank →First Merchants Bank, a subsidiary of First Merchants Corporation, disclosed via Form 8-K Item 8.01 that certain customer data was potentially exposed through the global MOVEit Transfer (Progress Software) incident. The compromise occurred at a third-party financial-institution vendor using MOVEit, not on the Bank's own systems. Online and mobile banking customers' personal information may have been copied. The vendor applied Progress's patches; the Bank is notifying affected customers starting on or about July 5, 2023, and expects cyber insurance to cover many costs.
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- bd_c529e1eb0188e432Montana State AGfiled 2023-07-05Verified
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/712534/000071253423000152/frme-20230705.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jul 5, 2023
- Raw hash
- 7785bcad1361b628e0644abd2f6e01aba15546003dfadb3ae37762033ae7c7cc
Source filing
Reporting entity
- Name
- FIRST MERCHANTS CORPnorm: first merchants
- SEC CIK
- 0000712534
Victim entity
- Name
- First Merchants Banknorm: first merchants bank
- Industry
- Financial Servicesllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 5, 2023
- Affected individuals
- Not disclosed
- Data types
- PIIIDENTITY_BASIC
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1190 Exploit Public-Facing ApplicationT1195 Supply Chain CompromiseT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Filed Form 8-K with the SEC under Item 8.01
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.