MidFirst Bank
ent_e5ac8b7202534fb9e8e8b323
Disclosures
6
State AG · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
6,097
as filed · State AG WA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- MidFirst Bank
- Normalized
- midfirst bank— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 337KMNHEWWWR6B7Q7W10
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- midfirst.com
Disclosure history (6)newest first
- Montana State AGas victim2023-08-21
MidFirst Bank notified customers of a data security incident involving its third-party file transfer provider, MOVEit. Between May 27-31, 2023, an unauthorized party downloaded files containing customer names, SSNs, and account numbers. MidFirst offered 24 months of identity monitoring via OnAlert.
- Massachusetts State AGas victim2023-08-21
MidFirst Bank reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2023-08-21. 3,818 Massachusetts residents were affected. The report records the breach type as electronic.
- Oregon State AGas victim2023-08-21
MidFirst Bank reported a data breach to the Oregon Attorney General. The breach was reported on 2023-08-21. The breach occurred during 5/27/2023 - 5/31/2023. The breach was discovered on 6/13/2023. Notice was sent on 8/21/2023.
- California State AGas victim2023-08-21
California AG SB24 submission for MidFirst Bank regarding a data breach. The notification letter is a sample template offering 24-month OnAlert identity monitoring and credit bureau guidance. Specific breach details, dates, and affected individual counts are not present in the provided source text.
- Washington State AGas victim2023-08-04
MidFirst Bank notified Washington AG of a third-party data breach involving the MOVEit file transfer platform. Unauthorized access occurred May 27-31, 2023, affecting customer names, SSNs, and account numbers. 6,097 Washington residents were notified. The bank offered 24 months of identity monitoring via OnAlert.
- Illinois State AGas victim2023-01-01
MIDFIRST BANK, MOVEIT filed a data-breach notice with the Illinois Attorney General during 2023 (case 23-575). The register records the breach as discovered on June 13, 2023. Illinois does not publish the number of people affected — 815 ILCS 530/10 permits the Attorney General to publish only the entity name, the types of personal information and the date range.