Heritage Financial Corporation
ent_019f93a8224664273cd98f2761c38033
Disclosures
1
SEC 8-K · 1 jurisdiction
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
—
no filed count in sample
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Heritage Financial Corporation
- Normalized
- heritage financial— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- 0001046025
- Domain
- None on record
Disclosure history (1)newest first
Subsidiary disclosures (7)filed by group companies
◈ These filings were made by or about subsidiaries of Heritage Financial Corporation — not by Heritage Financial Corporation itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- Oregon State AGvia Heritage Bank2026-04-28
Heritage Bank reported a data breach to the Oregon Attorney General. The breach was reported on 2026-04-28. The breach occurred during 3/2/2026 - 4/7/2026. The breach was discovered on 3/1/2026. 182,793 individuals were affected. Notice was sent on 4/23/2026.
- Texas State AGvia Heritage Bank2026-04-24
Heritage Bank based in Olympia, Washington, a other entity reported a data breach to the Texas Attorney General. The breach was discovered on 2026-04-07 and reported on 2026-04-24. 920 Texas residents were affected. 185,288 individuals affected in total. Types of information involved: Social Security Number Information;Government-issued ID number (e.g. passport, state ID card);Financial Information (e.g. account number, credit or debit card number). Consumers were notified via U.S. Mail.
- Nebraska State AGvia Heritage Bank2026-04-23
Heritage Bank issued a data breach notification letter to affected individuals in Nebraska and other states. The letter offers complimentary Single Bureau Credit Monitoring and fraud assistance via Cyberscout (TransUnion). The breach details (method, date, count) are not present in this notification letter.
- California State AGvia Heritage Bank2026-04-23
Heritage Bank submitted a sample data breach notification letter to the California Attorney General under SB24. The breach is reported to have occurred between February 5, 2026 and March 2, 2026. The notice letter offers affected individuals complimentary single-bureau credit monitoring, credit report, and credit score services through Cyberscout (a TransUnion company). The sample letter does not specify the nature of the incident, the attack vector, the categories of personal information affected, or the number of individuals impacted. Notice references residents of California, Maryland, New York, North Carolina, Rhode Island, and Washington, D.C.
- Washington State AGvia Heritage Bank2026-04-23
Heritage Bank issued a breach notification letter to affected individuals in multiple jurisdictions, including Washington, New York, and Maryland. The notice offers complimentary credit monitoring and fraud assistance via Cyberscout (TransUnion). The document provides instructions for credit freezes and fraud alerts but does not specify the breach mechanism, date of discovery, or number of affected individuals.
- Montana State AGvia Heritage Bank2026-04-23
Heritage Bank notified Montana residents of a cybersecurity incident occurring on or about March 1-2, 2026. Unauthorized actors accessed the network and copied files containing customer PII and financial account data. The bank engaged third-party investigators, secured the network, and implemented additional technical safeguards. Affected individuals were offered complimentary credit monitoring and identity protection services via Cyberscout (a TransUnion company). Notification was sent on April 23, 2026.
- Massachusetts State AGvia Heritage Bank2026-04-01
Heritage Bank notified residents of Massachusetts, Maryland, New York, North Carolina, Rhode Island, and Washington, D.C. of a data breach. The notice offers complimentary credit monitoring and fraud assistance via Cyberscout (TransUnion). The provided text excerpts do not specify the cause, date, or volume of the breach, nor do they explicitly list the data types affected, though credit monitoring implies exposure of financial or identity data.