The California Office of the Attorney General reported a data breach involving Cadence Bank on September 15, 2023. The breach occurred between May 28 and May 31, 2023, due to unauthorized access exploiting a zero-day vulnerability in the MOVEit Transfer application, potentially affecting personal information such as names, addresses, and Social Security numbers.
Source: https://oag.ca.gov/ecrime/databreach/reports/sb24-573352
TPRM report: https://www.rankiteo.com/company/cadence-bank
"id": "cad551072525",
"linkid": "cadence-bank",
"type": "Breach",
"date": "5/2023",
"severity": "85",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'industry': 'Banking',
'name': 'Cadence Bank',
'type': 'Financial Institution'}],
'attack_vector': 'Unauthorized Access',
'data_breach': {'personally_identifiable_information': True,
'sensitivity_of_data': 'High',
'type_of_data_compromised': ['Names',
'Addresses',
'Social Security numbers']},
'date_detected': '2023-09-15',
'date_publicly_disclosed': '2023-09-15',
'description': 'The California Office of the Attorney General reported a data '
'breach involving Cadence Bank on September 15, 2023. The '
'breach occurred between May 28 and May 31, 2023, due to '
'unauthorized access exploiting a zero-day vulnerability in '
'the MOVEit Transfer application, potentially affecting '
'personal information such as names, addresses, and Social '
'Security numbers.',
'impact': {'data_compromised': ['Names',
'Addresses',
'Social Security numbers']},
'references': [{'date_accessed': '2023-09-15',
'source': 'California Office of the Attorney General'}],
'title': 'Cadence Bank Data Breach',
'type': 'Data Breach',
'vulnerability_exploited': 'Zero-day vulnerability in MOVEit Transfer '
'application'}