DisclosureLens
HackingFinancial ServicesFinanceVulnerability ExploitStolen CredentialsCustomer Data InvolvedTargetedIdentity (basic)Government IDCredentialsMediumActive

Bank of the West

bd_b25a200ad1ae3d44 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Dec 19, 2013

Filed

Feb 5, 2014

To disclose

7 weeks

Affected

3state residents only

Linked

3 filings

Confidence

67%
Full breach record for Bank of the West10 incidents on file

Bank of the West notified the NH Attorney General that unauthorized individuals accessed a retired internet job application on Dec 19, 2013. Approximately 3 NH residents were affected. Data included names, SSNs, driver's licenses, DOBs, and credentials. The bank engaged forensic experts, secured servers, cooperated with law enforcement, and offered 12 months of identity monitoring.

Incident timeline

discovery → filing · 7 weeks / 48 days

Dec 19, 2013

Discovered

Feb 5, 2014

Filed

vs. sector median

2 wks faster

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
California State AGFeb 5 · first
New Hampshire State AGFeb 5 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.