HackingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedFINANCIAL_ACCOUNTAUTHENTICATIONLowContained
The Village Bank
bd_b94474c54e58448e · schema v1 · pii pii-v1
Full breach record for The Village Bank →The Village Bank notified Massachusetts residents of a suspected data compromise involving a third-party merchant's payment card environment. The breach affected debit card data (CVC2, account number, expiration) for transactions made between July 1, 2024, and June 30, 2026. The bank stated its own systems were not breached and found no unauthorized transactions, but offered card reissuance.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_2b0d174a340550abMassachusetts State AGfiled 2026-06-01(30d gap)Candidate
- bd_c7f1acc148eee7acMassachusetts State AGfiled 2026-06-01(30d gap)Candidate
- bd_c86c03c26ca776deMassachusetts State AGfiled 2026-05-01(61d gap)Candidate
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-1198-the-village-bank/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 1, 2026
- Raw hash
- 05de68c87f0b40f6eda6a29d0ab271f6eafa8ca6527397a4af3ee25f61d66af9
Reporting entity
- Name
- The Village Banknorm: the village bank
Victim entity
- Name
- The Village Banknorm: the village bank
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 22, 2026
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTAUTHENTICATION
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1530 Data from Cloud Storage Object
- Threat actor
- ExternalFinancial
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.