WESCOM CENTRAL CREDIT UNION
ent_019e5989fea3678bbfaab8377bcc320b
Disclosures
11
State AG · 7 jurisdictions
Multi-filing incidents
3
incidents joining 2+ filings here
Max affected reported
34,515
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- WESCOM CENTRAL CREDIT UNION
- Normalized
- wescom central credit union— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300C232ZWY1I57C16
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (11)newest first
- California State AGas victim2024-04-29
Wescom Central Credit Union notified California residents of a data breach involving a third-party vendor, Barracuda Network, Inc. A vulnerability in Barracuda's network protection solutions allowed unauthorized third-party access to data between October 30, 2022, and May 30, 2023. Wescom discovered the incident on May 19, 2023. Affected data includes names, financial account numbers, and Social Security numbers. Wescom ceased using Barracuda and offered 12 months of credit monitoring.
- Washington State AGas victim2024-04-29
Wescom Central Credit Union reported a cyberattack involving a vulnerability in Barracuda's Email Security Gateway appliance. Unauthorized access occurred between October 30, 2022, and May 30, 2023. The incident exposed names, financial account numbers, SSNs, and driver's license numbers of 557 Washington residents. Wescom removed the appliance, engaged forensic experts, and provided credit monitoring.
- Maine State AGas victim2023-10-21
Wescom Central Credit Union experienced an external system breach that occurred between October 30, 2022, and May 30, 2023. The breach, discovered on September 18, 2023, affected 34,515 individuals. The compromised information included names and Social Security numbers. The company began notifying affected individuals on October 20, 2023, and offered one year of identity protection and credit monitoring services.
- Montana State AGas victim2023-10-21
Wescom Central Credit Union notified Montana residents of a data breach involving third-party vendor Barracuda Network, Inc. A vulnerability in Barracuda's ESG appliance allowed unauthorized access to emails and attachments between October 2022 and May 2023. Wescom discovered the impact on May 30, 2023, removed the appliance, and offered 12 months of identity protection services.
- California State AGas victim2023-10-21
Wescom Central Credit Union notified members that a vulnerability in Barracuda Network's ESG appliances allowed unauthorized access to emails and attachments between October 30, 2022, and May 30, 2023. Wescom confirmed impact on May 30, 2023, and immediately removed the appliances from its network. Personal information in affected emails may have been accessed. Wescom is offering 12 months of identity protection services.
- Massachusetts State AGas victim2023-10-21
Wescom Central Credit Union reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-10-21. 15 Massachusetts residents were affected. The report records the breach type as electronic.
- Vermont State AGas victim2023-10-20
Wescom Central Credit Union notified consumers of a data breach involving its Barracuda ESG appliance. A vulnerability allowed unauthorized access to emails and attachments stored on the appliance between October 2022 and May 2023. Wescom removed and decommissioned the appliance, engaged cybersecurity experts, and offered 12 months of identity protection services. Personal information, including financial account data, was potentially accessed.
- New Hampshire State AGas victim2019-11-27
Wescom Central Credit Union notified the NH AG of a breach involving third-party vendor Geezeo. An unauthorized party downloaded legacy database backups on May 14, 2019, exposing member names, account numbers, balances, and financial info. Wescom was notified by Geezeo on Sept 24, 2019. One NH resident affected. Notices sent Nov 19, 2019. Credit monitoring offered.
- Montana State AGas victim2019-11-19
Wescom Central Credit Union notified members of a third-party data breach involving its eBudget provider, Geezeo. On May 14, 2019, an unauthorized party downloaded database backups containing member PII and financial account data. Wescom was notified by Geezeo on September 24, 2019. Notices were sent November 19, 2019, offering 12 months of credit monitoring.
- California State AGas victim2019-11-19
Wescom Central Credit Union notified members that an unauthorized party downloaded database backup files from third-party provider Geezeo on May 14, 2019. Wescom was notified on September 24, 2019. Affected data included names, addresses, account numbers, balances, emails, gender, and birth years. No SSNs or passwords were exposed. Wescom offered 12 months of credit monitoring.
- Massachusetts State AGas victim2019-11-19
Wescom Central Credit Union reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2019-11-19. 3 Massachusetts residents were affected. The report records the breach type as electronic.