CNB Bank & Trust, N.A. reported a data breach to the Montana Attorney General. The breach was reported on 2023-11-15. The breach occurred from 5/27/2023 to 5/31/2023. 5 Montana residents were affected.
Affected (this filing): 5
Clustered 2 filings across 2 jurisdictions · filed Nov 15, 2023. View entity profile → Other incidents for this victim →
incident inc_6ee7178c1b6a4a68 · merge_method llm · confidence 44%
Discovered → first regulatory filing
Time between earliest and latest filing
Not recorded for this incident
Discovery variance · Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster; needs two dated filings.
Identity (basic) · Financial account
ME MT
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
May 27, 2023
When the intrusion reportedly occurred, per the linked filings
Oct 26, 2023
Reported by MAINE AG filing
CNB Bank & Trust, N.A. reported a data breach to the Montana Attorney General. The breach was reported on 2023-11-15. The breach occurred from 5/27/2023 to 5/31/2023. 5 Montana residents were affected.
Affected (this filing): 5
CNB Bank & Trust, N.A. notified 4 individuals of a data breach stemming from the MOVEit Transfer vulnerability. The breach occurred between May 27, 2023, and May 31, 2023, and was discovered on October 26, 2023. The compromised information included names and financial account numbers. The bank offered two years of credit monitoring and identity theft prevention services through Kroll.
Affected (this filing): 4
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.