MISSION VALLEY BANCORP
bd_da9bab8d62b6357f · schema v1 · pii pii-v1
Full breach record for MISSION VALLEY BANCORP →Mission Bancorp notified the Maryland Attorney General of a ransomware incident discovered on December 2, 2024. The attack encrypted systems and displayed a ransom note. While core banking systems were unaffected, forensic review confirmed unauthorized acquisition of employee and customer data, including names, SSNs, DOBs, driver's license numbers, and financial account numbers. Five Maryland residents were affected. Notifications were mailed on January 6, 2025, offering 12 months of credit monitoring via TransUnion. The company engaged forensic investigators, contained the network, and implemented MFA.
Source provenance
- Source URL
- https://oag.maryland.gov/resources-info/SBN%20Documents/2025/ITU-376230.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Nov 13, 2025
- Raw hash
- a3f621a8e358b09ae2f154e1d46d59c7a2445ae421a1a0440f71db46eda355fd
Reporting entity
- Name
- MISSION VALLEY BANCORPnorm: mission valley bancorp
Victim entity
- Name
- MISSION VALLEY BANCORPnorm: mission valley bancorp
Incident
- Discovered
- Dec 2, 2024
- Materiality determined
- —
- Notification sent
- Jan 6, 2025
- Affected individuals
- 5
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for ImpactT1041 Exfiltration Over C2 Channel
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified Maryland Attorney General
Compliance
- Time to disclose
- 49 weeks(346 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.