Mission Bancorp notified the Maryland Attorney General of a ransomware incident discovered on December 2, 2024. The attack encrypted systems and displayed a ransom note. While core banking systems were unaffected, forensic review confirmed unauthorized acquisition of employee and customer data, including names, SSNs, DOBs, driver's license numbers, and financial account numbers. Five Maryland residents were affected. Notifications were mailed on January 6, 2025, offering 12 months of credit monitoring via TransUnion. The company engaged forensic investigators, contained the network, and implemented MFA.
Affected (this filing): 5