MalwareRansomwareCustomer Data InvolvedData EncryptedRansom DemandedPIIIDENTITY_BASICIDENTITY_GOVERNMENTCritical
1st Source Bank
bd_ee5f8afdf477969e · schema v1 · pii pii-v1
Full breach record for 1st Source Bank →1st Source Bank reported a ransomware incident that was discovered on June 1, 2023. The breach impacted approximately 450,000 individuals, compromising their names and Social Security numbers. The bank began notifying affected parties on July 14, 2023, and offered 12 months of identity monitoring services through Kroll.
Maine clockDiscovered Jun 1, 2023 → Filed with AG Jul 19, 202348d ⏱ ME AG >30d7 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 10 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (9) · sorted by filing gap
- bd_504a71c703e7184fCalifornia State AGfiled 2023-07-19Verified
- bd_644846888cf47c7fMontana State AGfiled 2023-07-19Verified
- bd_d0cebba25691bccfWashington State AGfiled 2023-07-20(1d gap)Verified
- bd_db8e5883d0d70d12Oregon State AGfiled 2023-07-20(1d gap)Verified
Show 5 more filings ↓Show fewer ↑up to 9d gap
- bd_a872f10fb82b1c59Vermont State AGfiled 2023-07-14(5d gap)Candidate
- bd_4a59c8811709f62bCalifornia State AGfiled 2023-07-26(7d gap)Verified
- bd_fda2be588d043776New Hampshire State AGfiled 2023-07-26(7d gap)Verified
- bd_08c27ccfede4e9efOregon State AGfiled 2023-07-27(8d gap)Verified
- bd_66ec9f2d6644e603SEC 8-Kfiled 2023-07-10(9d gap)Candidate
Source provenance
- Source URL
- https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/ecd3f2c2-8cdf-48cc-84f5-f3321ae41cd7.shtml
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jul 19, 2023
- Raw hash
- 6eabde2fd6522ac03d0f62ce09820313900ab3519fb6a1cc5e6f4d4d6c517514
Reporting entity
- Name
- 1st Source Banknorm: 1st source bank
Victim entity
- Name
- 1st Source Banknorm: 1st source bank
Incident
- Discovered
- Jun 1, 2023
- Materiality determined
- —
- Notification sent
- Jul 14, 2023
- Affected individuals
- 450,000
- Data types
- PIIIDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified consumer reporting agencies
Compliance
- Time to disclose
- 7 weeks(48 days from discovery to filing)
- Compliance flags
- ME AG >30d · 48d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status Maine Discovered: Jun 1, 2023→ Filed with AG: Jul 19, 202348d 30 days (soft) ME AG >30d
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.