Northfield Bank
bd_9963040c41fa4926 · schema v1 · pii pii-v1
Full breach record for Northfield Bank →Northfield Bank notified New Hampshire residents of a data security event involving a third-party vendor's use of MOVEit Transfer software. The incident occurred between May 27 and May 31, 2023, and the bank was notified on August 4, 2023. The breach potentially exposed customer personal information, including government identifiers, via vulnerabilities in the vendor's file transfer application. Northfield Bank engaged cybersecurity specialists and provided credit monitoring services through Kroll to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
May 27, 2023
Begins
Aug 4, 2023
Discovered
Sep 8, 2023
Filed
vs. sector median
4 wks faster
Linked disclosures
Why this link?Regulatory filings (6) · sorted by filing gap
- Massachusetts State AGbd_05cc028fdb8910792023-09-08Verified
- Vermont State AGbd_e04b124b7a8d579e2023-09-08Candidate
- Maine State AGbd_79fd0089944d11242023-09-07 · +1dCandidate
- Indiana State AGbd_2d7bc11eba226abc2023-09-25 · +17dVerified
Show 2 more filings ↓Show fewer ↑up to 24d gap
- Vermont State AGbd_d86ff387ddb8a86a2023-09-25 · +17dVerified
- New Hampshire State AGbd_d9885b4724d481062023-10-02 · +24dVerified
Filing propagation · 7 filings · 5 states
View merged incident ↗Pattern: first filing Sep 7 (ME), last Oct 2 (NH) — a 25-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.