HackingFinancial ServicesTechnologyFinanceStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedDelayed DiscoveryPIILowContained
FINASTRA TECHNOLOGY, INC.
bd_7dbdccbdc6fa01b8 · schema v1 · pii pii-v1
Full breach record for FINASTRA TECHNOLOGY, INC. →Finastra Technology, Inc., a financial software solutions provider, reported that an unauthorized third party accessed its Secure File Transfer Platform (SFTP) between October 31 and November 8, 2024, exfiltrating files on October 31, 2024. The breach was discovered on November 7, 2024. Personal information including names and other data elements of 233 Maine residents was involved. The FBI was notified. Affected individuals were offered 24-month Experian IdentityWorks credit monitoring.
Maine clockDiscovered Nov 7, 2024 → Filed with AG Jul 3, 2025238d ✗ ME AG >90d34 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 6 about the same incident.View merged incident
A leak claim by ryuk about this victim predates this filing by 1931 days.View originating leak claim
Linked disclosures
Why this link?Regulatory filings (5) · sorted by filing gap
- bd_0f147676c144ac5aIowa State AGfiled 2025-07-03Candidate
- bd_27ecf1fa9b7657feCalifornia State AGfiled 2025-07-03Verified
- bd_430784254ce353aeWashington State AGfiled 2025-07-03Verified
- bd_599c031205796f94Oregon State AGfiled 2025-07-03Verified
Show 1 more filing ↓Show fewer ↑up to 5d gap
- bd_5e257872f264f7fdTexas State AGfiled 2025-07-08(5d gap)Verified
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/50ef1213-a603-424f-888d-3ce7899eef06.html
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 3, 2025
- Raw hash
- 3f2bae285935d7bfd9d02d38e744f92ba86990f76686c2a6c49be1c2b8525db3
Reporting entity
- Name
- FINASTRA TECHNOLOGY, INC.norm: finastra technology
- Domain
- finastra.com
- Industry
- Financial Services
Victim entity
- Name
- FINASTRA TECHNOLOGY, INC.norm: finastra technology
- Domain
- finastra.com
- Industry
- Financial Services
- Industry
- Financial ServicesllmTechnologyllm
Incident
- Discovered
- Nov 7, 2024
- Materiality determined
- —
- Notification sent
- Jul 3, 2025
- Affected individuals
- 233
- Data types
- PII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Notified FBI and law enforcement
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 34 weeks(238 days from discovery to filing)
- Compliance flags
- ME AG >90d · 238dME resident >180d · 238dLeak >180d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Nov 7, 2024→ Filed with AG: Jul 3, 2025238d 90 days ME AG >90d Maine Discovered: Nov 7, 2024→ Notified: Jul 3, 2025238d 180 days ME resident >180d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.