TCM Bank, N.A.
bd_821991505c0b0fb2 · schema v1 · pii pii-v1
TCM Bank, N.A. notified individuals of a data incident caused by a third-party vendor's website misconfiguration. The misconfiguration, active from March 2017 to July 2018, exposed personal information including names, addresses, SSNs, and dates of birth. TCM Bank alerted the vendor, remediated the issue, and offered one year of credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Mar 5, 2017
Begins
Jul 16, 2018
Discovered
Aug 3, 2018
Filed
vs. sector median
6 wks faster
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Massachusetts State AGbd_8f3908f88c6402cc2018-08-03Verified
- New Hampshire State AGbd_d280f40c04b4918c2018-08-03Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.