HackingData ExfiltratedCustomer Data InvolvedSupply Chain (3P Vendor)FINANCIAL_ACCOUNTLowActive
Eastern Bank
bd_d9eac86bf9dbdfd7 · schema v1 · pii pii-v1
Full breach record for Eastern Bank →Eastern Bank notified Massachusetts customers via state-agency filing dated 2026-12-15 regarding a breach at a third-party merchant accepting Eastern Bank Debit MasterCard BusinessCards. The bank issued notices on 2026-07-24, lowering card limits to $500 and mailing replacement cards. Specific details of the merchant breach were not provided by the third party. Financial account data (card numbers) was potentially compromised.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_566f14d500ef34f3Massachusetts State AGfiled 2026-06-01(30d gap)Candidate
- bd_f59acb674bba6dafMassachusetts State AGfiled 2026-05-01(61d gap)Candidate
Source provenance
- Source URL
- https://www.mass.gov/doc/2026-1215-eastern-bank/download
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 1, 2026
- Raw hash
- 4611d5b48e6eccc58eba7946f9ce8657e2d2424ffaef01b5a851c25f189f6005
Reporting entity
- Name
- Eastern Banknorm: eastern bank
- Domain
- easternbank.com
Victim entity
- Name
- Eastern Banknorm: eastern bank
- Domain
- easternbank.com
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- Jul 24, 2026
- Affected individuals
- Not disclosed
- Data types
- FINANCIAL_ACCOUNT
- Attack vector
- Third-Party / Supply Chain
- MITRE ATT&CK
- T1195 Supply Chain Compromise
- Threat actor
- Partner
- Initial access
- supply_chain
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.