HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedFINANCIAL_ACCOUNTAUTHENTICATIONLowContained
The Village Bank
bd_c86c03c26ca776de · schema v1 · pii pii-v1
Full breach record for The Village Bank →The Village Bank notified Massachusetts residents of a suspected data compromise involving a third-party merchant's payment card environment. The breach affected debit card data (CVC2, account number, expiration date) between October 2025 and May 2026. The Bank's own systems were not breached. Cardholders were offered free card replacement.
This filing is one of 4 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (3) · sorted by filing gap
- bd_2b0d174a340550abMassachusetts State AGfiled 2026-06-01(31d gap)Candidate
- bd_c7f1acc148eee7acMassachusetts State AGfiled 2026-06-01(31d gap)Candidate
- bd_b94474c54e58448eMassachusetts State AGfiled 2026-07-01(61d gap)Candidate
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-808-the-village-bank/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- May 1, 2026
- Raw hash
- 6256dec4a7dc91cd09d3e0f273beadf779ef24b424229ee6e438c82ba41f2a33
Reporting entity
- Name
- The Village Banknorm: the village bank
Victim entity
- Name
- The Village Banknorm: the village bank
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- May 7, 2026
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNTAUTHENTICATION
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1190 Exploit Public-Facing Application
- Threat actor
- ExternalFinancial
- Initial access
- exploit_public_facing
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.