Sunflower Bank, National Association
bd_d36ee2ad177829e8 · schema v1 · pii pii-v1
Full breach record for Sunflower Bank, National Association →FirstSun Capital Bancorp reported that its subsidiary, Sunflower Bank, N.A., was impacted by a zero-day vulnerability in Progress Software's MOVEit file transfer software. An unauthorized party likely downloaded files containing PII from the MOVEit server. The bank engaged forensic experts and applied vendor patches. The investigation is ongoing, and the Bank reported no material interruption to its business operations.
J jump to incidentP pin to compareR raw source
Incident timeline
May 31, 2023
Discovered
Jul 14, 2023
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (7) · sorted by filing gap
- Indiana State AGbd_791c96ad5aceed032023-08-14 · +31dVerified
- California State AGbd_895de35e1cea98f02023-08-15 · +32dVerified
- Montana State AGbd_b791064e55b0bfd82023-08-15 · +32dVerified
- New Hampshire State AGbd_ef42af6291b75a202023-08-15 · +32dVerified
Show 3 more filings ↓Show fewer ↑up to 82d gap
- Massachusetts State AGbd_57054109e6719b1e2023-08-22 · +39dVerified
- New Hampshire State AGbd_46ae3c2793a327922023-10-02 · +80dVerified
- California State AGbd_fea17e438a10a5c62023-10-04 · +82dVerified
Filing propagation · 8 filings · 5 states
View merged incident ↗Pattern: first filing Jul 14, last Oct 4 (CA) — a 82-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.