NCB Management Services, Inc.
ent_019e22fbee4547402be40dfd09a4f629
Disclosures
25+
State AG · 12 jurisdictions
Multi-filing incidents
4
incidents joining 2+ filings here
Max affected reported
1,087,842
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- NCB Management Services, Inc.
- Normalized
- ncb management— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300D01OEI47BS0N11
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (newest 25)newest first
- New Hampshire State AGas victim2023-06-28
NCB Management Services, Inc. notified the NH Attorney General of a security incident where an unauthorized party accessed systems on Feb 1, 2023, discovered on Feb 4, 2023. Approximately 2,938 NH residents were affected. Data included names and other PII. NCB contained the breach, engaged forensic experts, notified law enforcement, and provided 2 years of Kroll identity monitoring.
- Delaware State AGas victim2023-06-16
NCB Management Services, Inc. issued a supplemental notice regarding a cybersecurity incident where an unauthorized party accessed confidential client account information between February 1 and February 4, 2023. The breach affected approximately 3,500 Rhode Island residents (and potentially others across multiple states) whose names and government identifiers (SSN, DOB, driver's license) were accessed. NCB contained the breach, cooperated with federal law enforcement, and provided two years of complimentary Kroll identity monitoring services.
- Montana State AGas victim2023-05-26
NCB Management Services, Inc. notified affected individuals of a data breach where an unauthorized third party accessed confidential account information, including names, SSNs, and credit card account numbers. The incident occurred on February 1, 2023, and was discovered on February 4, 2023. NCB engaged Kroll for credit monitoring and cooperated with federal law enforcement.
- Washington State AGas victim2023-05-26
NCB Management Services, Inc., a third-party accounts receivable provider for Capital One, experienced a security incident where an unauthorized third party accessed systems between Feb 1-4, 2023. The breach exposed names, addresses, SSNs, and account numbers of 605 Washington residents. Capital One Services, LLC filed this notice with the WA AG on May 26, 2023.
- Maine State AGas victim2023-05-26
Capital One, a financial services company, reported a data breach that occurred at a third-party vendor, NCB Management Services, Inc. The breach, an external system intrusion (hacking), took place from February 1, 2023, to February 4, 2023, and was discovered on April 26, 2023. It affected 222 Maine residents. The compromised information included names combined with financial account or credit/debit card numbers and their security codes. In response, the vendor is offering two years of identity monitoring services through Kroll.
- Massachusetts State AGas victim2023-05-23
NCB Management Services, Inc. reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-05-23. 9,893 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-05-23
NCB Management Services, Inc. reported an external system breach (hacking) occurring between Feb 1-6, 2023, discovered on Feb 4, 2023. The incident affected 1,087,842 individuals, including 3,261 Maine residents. Compromised data included names and financial account numbers. NCB notified consumers in writing on May 19, 2023, and provided 24 months of identity monitoring through Kroll.
- South Carolina State AGas victim2023-05-23
NCB Management Services, Inc. notified affected individuals of a data breach where an unauthorized party accessed systems on Feb 1, 2023, discovered on Feb 4, 2023. Personal info including names and other data elements was accessed. NCB contained the intrusion, notified law enforcement, and provided 2 years of Kroll identity monitoring.
- Oregon State AGas victim2023-05-22
NCB Management Services, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2023-05-22. 1,087,842 individuals were affected.
- Montana State AGas victim2023-05-22
NCB Management Services, Inc. disclosed that an unauthorized party accessed confidential client account information on February 1, 2023, discovered on February 4, 2023. The incident involved PII including names and potentially other identifiers. NCB contained the breach, notified law enforcement, and provided two years of Kroll identity monitoring to affected individuals.
- Hawaii State AGas victim2023-05-22
NCB Management Services, Inc. reported a data breach to the Hawaii Office of Consumer Protection. The breach was reported on 2023-05-22. Breach type: Hackers/Unauthorized. 4,145 Hawaii residents were affected.
- New Hampshire State AGas victim2023-05-22
NCB Management Services, Inc. notified the NH Attorney General of a security incident where an unauthorized party accessed systems on Feb 1, 2023, discovered on Feb 4, 2023. The breach affected approx. 2,938 NH residents, exposing names and other PII. NCB contained the intrusion, engaged forensic experts, notified law enforcement, and provided 2 years of Kroll identity monitoring. Remediation included enhanced network monitoring, access controls, and employee training.
- California State AGas victim2023-05-22
NCB Management Services, Inc. reported that an unauthorized party gained access to its systems on February 1, 2023, which was discovered on February 4, 2023. The breach affected confidential client account information, potentially including names and financial account details. NCB contained the intrusion, implemented additional security measures, and offered two years of identity monitoring via Kroll. The company is cooperating with federal law enforcement.
- Washington State AGas victim2023-05-22
NCB Management Services, Inc. filed a supplemental notice with the Washington Attorney General regarding a ransomware incident. Unauthorized access occurred Feb 1-6, 2023; discovered Feb 4, 2023. Approximately 15,899 Washington residents were notified. Data included names and financial/account info. NCB contained the breach, engaged Kroll for credit monitoring, and cooperated with law enforcement.
- Delaware State AGas victim2023-05-19
NCB Management Services, Inc. disclosed a data breach where an unauthorized party accessed systems containing confidential client account information between February 1 and February 4, 2023. The incident involved potentially accessed data related to closed Bank of America credit card accounts, including names, addresses, SSNs, driver's license numbers, and financial account details. NCB worked with federal law enforcement, stopped the unauthorized activity, and provided affected individuals with two years of complimentary identity theft protection via Experian.
- Indiana State AGas victim2023-04-19
NCB Management Services, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2023-02-01 and was reported on 2023-04-19. 17,614 Indiana residents were affected. 1,087,842 individuals affected in total.
- New Hampshire State AGas victim2023-03-29
NCB Management Services, Inc. notified the New Hampshire Attorney General of a security incident affecting Bank of America customer data. An unauthorized party accessed NCB systems on February 1, 2023, discovered on February 4, 2023. The incident potentially exposed credit card account details for 2,210 New Hampshire residents. NCB stopped the unauthorized activity, notified law enforcement, and began customer notifications on March 24, 2023, offering two years of identity theft protection.
- Delaware State AGas victim2023-03-28
NCB Management Services, Inc. notified affected individuals of a data breach occurring February 1, 2023, discovered February 4, 2023. An unauthorized party accessed systems containing closed Bank of America credit card account data, including names, SSNs, driver's license numbers, and financial account details. NCB worked with federal law enforcement and provided two years of Experian IdentityWorks protection. The incident is contained.
- Washington State AGas victim2023-03-24
NCB Management Services, Inc. reported unauthorized access to systems containing closed Bank of America credit card account data (names, SSNs, driver's licenses, financial account numbers) affecting 12,510 Washington residents. Access occurred Feb 1-6, 2023; discovered Feb 4. NCB engaged federal law enforcement and provided 2 years of Experian IdentityWorks.
- California State AGas victim2023-03-24
NCB Management Services, Inc. reported unauthorized access to its systems on February 1, 2023, discovered on February 4, 2023. The incident potentially exposed personal and financial information of former Bank of America credit card customers, including names, addresses, SSNs, and account numbers. NCB engaged federal law enforcement and offered two years of identity theft protection via Experian.
- Hawaii State AGas reporting2023-03-24
NCB Management Services, Inc. notified Hawaii residents of a data breach where an unauthorized party accessed systems on Feb 1, 2023. NCB, a third-party servicer for Bank of America, confirmed access on March 8, 2023. Data included names, SSNs, driver's licenses, and credit card details for closed accounts. NCB engaged law enforcement and offered 2 years of Experian IdentityWorks.
- Maine State AGas victim2023-03-24
NCB Management Services, Inc., a financial services company and a vendor for Bank of America, experienced an external system breach (hacking) on February 1, 2023. The breach was discovered on February 4, 2023. The incident resulted in the compromise of names and driver's license or non-driver identification card numbers for 494,969 individuals, including 1,925 residents of Maine. Affected individuals were notified on March 24, 2023, and offered 24 months of identity theft protection services through Experian.
- Oregon State AGas victim2023-03-24
NCB Management Service, Inc. reported a data breach to the Oregon Attorney General. The breach was reported on 2023-03-24. The breach occurred during 2/1/2023 - 2/6/2023. The breach was discovered on 2/4/2023. 494,969 individuals were affected. Notice was sent on 3/24/2023.
- Illinois State AGas reporting2023-01-01
NCB MGMT SRVC, INC. filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-426). The register records the breach as discovered on May 22, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.
- Illinois State AGas reporting2023-01-01
NCB MGMT SRVC, INC. filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-327). The register records the breach as discovered on February 1, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.