1st Source Bank
bd_d3b9e2557a659262 · schema v1 · pii pii-v1
Full breach record for 1st Source Bank →6 incidents on file1st Source Bank notified customers that their personal information, including names and Social Security numbers, may have been acquired without authorization due to a critical vulnerability in the MOVEit file transfer software provided by Progress Software. The bank became aware of the alert on June 1, 2023, and patched the system. The breach date listed by the CA AG is May 27, 2023. The bank engaged cybersecurity experts and is offering 12 months of identity monitoring via Kroll.
J jump to incidentP pin to compareR raw source
Incident timeline
May 27, 2023
Begins
Jun 1, 2023
Discovered
Nov 28, 2023
Filed
vs. sector median
+16 wks slower
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_3d177f54ec92c9902023-11-20 · +8dCandidate
Filing propagation · 2 filings · 2 states
View merged incident ↗Pattern: first filing Nov 20 (IN), last Nov 28 (CA) — a 8-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.