DisclosureLens
MalwareFinancial ServicesFinanceRansomwareData ExfiltratedData EncryptedCustomer Data InvolvedIdentity (basic)Financial accountMediumContained

Alaska USA Federal Credit Union

bd_7de055b56b5cd102 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jun 2, 2022

Filed

Jul 25, 2022

To disclose

8 weeks

Affected

2,262state residents only

Confidence

69%

Alaska USA Federal Credit Union, a customer of Kaye-Smith Enterprises, Inc., experienced a ransomware attack. Unauthorized access occurred between May 18 and June 2, 2022. The breach was discovered on June 2, 2022. Data exfiltrated included names, addresses, member numbers, account numbers, VINs, and collateral. 2,262 Washington residents were notified on August 22, 2022.

Washington clock WA AG >30d8 weeks discovery → filing
AG web formThe discovery date came from the AG web-form field, which is systematically later than the detection date stated in the letter. Treat the clock as indicative.

Incident timeline

undetected · 15 days
discovery → filing · 8 weeks / 53 days

May 18, 2022

Begins

Jun 2, 2022

Discovered

Jul 25, 2022

Filed

vs. sector median

1 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2,262 affectedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.