DisclosureLens
MalwareFinancial ServicesFinanceRansomwareData EncryptedCustomer Data InvolvedIdentity (basic)Government IDFinancial accountMediumContained

ENERGY ONE FEDERAL CREDIT UNION

bd_e46d62a8674a9410 · schema v1 · pii pii-v1

Severity

Medium

Discovered

Jun 4, 2020

Filed

Aug 21, 2020

To disclose

11 weeks

Affected

Not disclosed

Linked

3 filings

Confidence

65%
Full breach record for ENERGY ONE FEDERAL CREDIT UNION2 incidents on file

Energy One Federal Credit Union experienced a ransomware incident on June 4, 2020, involving unauthorized encryption of files on its network. The actor may have accessed member information including names, addresses, financial account numbers, and Social Security numbers. The credit union secured the network, initiated a forensic investigation, and offered one year of identity protection services to affected members.

Incident timeline

discovery → filing · 11 weeks / 78 days

Jun 4, 2020

Begins

Jun 4, 2020

Discovered

Aug 21, 2020

Filed

vs. sector median

+3 wks slower

This filing is one of 3 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (2) · sorted by filing gap

Filing propagation · 3 filings · 3 states

View merged incident ↗
Montana State AGAug 21 · first
Massachusetts State AGAug 21 · first
California State AGAug 21 · first · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.