ALOHA PACIFIC FEDERAL CREDIT UNION
ent_019e23213f9919e040557e7e8d139f2e
Disclosures
5
State AG · 5 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
6,075
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- ALOHA PACIFIC FEDERAL CREDIT UNION
- Normalized
- aloha pacific federal credit union— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300TT6197INLGZW29
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (5)newest first
- Montana State AGas victim2023-08-30
Aloha Pacific Federal Credit Union notified members of a data security incident involving its business partner, Darling Consulting Group (DCG). DCG's use of Progress Software's MOVEit secure file transfer tool was compromised due to a vulnerability disclosed on May 31, 2023. The incident potentially exposed members' names, SSNs, dates of birth, and credit card/account numbers. Aloha Pacific FCU systems were not directly accessed. The credit union is offering 12 months of Experian IdentityWorks Credit 3B.
- Massachusetts State AGas victim2023-08-30
Aloha Pacific Federal Credit Union reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-08-30. 2 Massachusetts residents were affected. The report records the breach type as electronic.
- Maine State AGas victim2023-08-30
Aloha Pacific Federal Credit Union reported a data breach affecting 2 Maine residents. The breach, discovered on August 8, 2023, and occurring on May 30, 2023, resulted in the compromise of names and Social Security numbers. The company offered 12 months of identity protection services through Experian.
- Hawaii State AGas victim2023-08-30
Aloha Pacific Federal Credit Union notified Hawaii AG of a third-party data incident involving vendor Darling Consulting Group's use of MOVEit Transfer. A vulnerability exploited on May 31, 2023, potentially exposed personal info (names, SSNs, DOBs, credit card numbers) of 5,409 Hawaii residents. APFCU discovered the incident on August 1, 2023, and sent notifications on August 30, 2023, offering credit monitoring.
- Vermont State AGas victim2023-08-30
Aloha Pacific Federal Credit Union notified consumers of a data breach involving its vendor, Darling Consulting Group, which used Progress Software's MOVEit file transfer tool. A vulnerability in MOVEit allowed unauthorized access to files containing member PII, including names, SSNs, DOBs, and credit card numbers. Aloha FCU's own systems were not accessed. The credit union is offering 12 months of Experian IdentityWorks credit monitoring.
Supply-chain cascadesreviewed and confirmed
- ALOHA PACIFIC FEDERAL CREDIT UNION’s filing is one of at least 6 in the Darling Consulting Group supply-chain incident (2023).