Social EngineeringPhishingCustomer Data InvolvedData ExfiltratedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
VISTA POINT MORTGAGE, LLC
bd_c02eef9ffeb8abfb · schema v1 · pii pii-v1
Full breach record for VISTA POINT MORTGAGE, LLC →Vista Point Mortgage, LLC submitted a supplemental security breach notification to the Maryland Attorney General on March 19, 2025. The incident involved unauthorized access to two employee email accounts between May 21 and June 5, 2024, following a phishing attack. The breach exposed the names and Social Security numbers of 63 Maryland residents. Vista Point secured its systems, conducted an investigation, and offered complimentary credit monitoring and identity protection services to affected individuals.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed63 affectedView incident
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-375824.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 23, 2026
- Raw hash
- 0c071f40952d400b4b4087d28a6c1c2de8e8e361650c19799afc96aeb129aebd
Reporting entity
- Name
- VISTA POINT MORTGAGE, LLCnorm: vista point mortgage
- Domain
- vistapointmtg.com
Victim entity
- Name
- VISTA POINT MORTGAGE, LLCnorm: vista point mortgage
- Domain
- vistapointmtg.com
Incident
- Discovered
- May 21, 2024
- Materiality determined
- —
- Notification sent
- Mar 19, 2025
- Affected individuals
- 63
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid Accounts
- Threat actor
- External
- Regulator citations
- Notified Maryland Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 23 months(702 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.