NorthEast Community Bank
ent_019e639e9100311a64e1cbc0c443cef3
Disclosures
3
State AG · 3 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
11,477
nationwide · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- NorthEast Community Bank
- Normalized
- northeast community bank— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 984500I870D8FFWCE112
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- New Hampshire State AGas victim2023-09-29
NorthEast Community Bank, via core processor FIS, disclosed a data security incident involving Progress Software's MOVEit Transfer tool. A zero-day vulnerability was exploited between May 31 and June 1, 2023, potentially exposing New Hampshire customers' names, addresses, and debit/ATM card numbers. FIS disabled the tool, patched systems, and engaged forensic experts. Three NH residents were notified on September 26, 2023, and offered two years of credit monitoring.
- Maine State AGas victim2023-09-26
NorthEast Community Bank reported a data breach affecting 11,477 individuals, which occurred at its third-party vendor, Fidelity National Information Services, Inc. (FIS). The incident, which took place on May 27, 2023, and was discovered on June 26, 2023, resulted in the unauthorized access to names and financial account numbers. This breach is associated with the widespread MOVEit transfer software vulnerability exploitation. Affected individuals were notified on September 26, 2023, and offered 24 months of credit monitoring services.
- Indiana State AGas victim2023-05-27
Northeast Community Bank reported a data breach to the Indiana Attorney General. 2 Indiana residents were affected. 11,477 individuals affected in total.
Supply-chain cascadesreviewed and confirmed
- NorthEast Community Bank’s filing is one of at least 97 in the Progress Software Corporation supply-chain incident (2023).