Mauch Chunk Trust Company

Mauch Chunk Trust Company

The Maine Office of the Attorney General disclosed that Mauch Chunk Trust Company suffered a data breach due to an external system compromise tied to the MOVEit software vulnerability. The incident occurred on May 30, 2023, but was only detected on July 12, 2023. The breach exposed personal and financial information including account numbers of 29,949 individuals, raising risks of identity theft and financial fraud. Affected individuals were formally notified on August 18, 2023, with offers of 12 months of credit monitoring and identity theft protection services as a remedial measure. The breach stemmed from a third-party vulnerability, highlighting supply-chain risks in cybersecurity. While no immediate evidence of misuse was reported, the exposure of sensitive financial data poses long-term threats to customer trust and regulatory compliance.

Source: https://www.maine.gov/agviewer/content/ag/985235c7-cb95-4be2-8792-a1252b4f8318/55d4d150-3f38-468d-9b4e-088ee1ce16d2.shtml

TPRM report: https://www.rankiteo.com/company/mauchchunktrust

"id": "mau558091725",
"linkid": "mauchchunktrust",
"type": "Breach",
"date": "5/2023",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization’s existence"
{'affected_entities': [{'customers_affected': '29,949',
                        'industry': 'Banking/Financial Services',
                        'location': 'Pennsylvania, USA',
                        'name': 'Mauch Chunk Trust Company',
                        'type': 'Financial Institution'}],
 'attack_vector': 'Exploitation of Software Vulnerability (MOVEit)',
 'customer_advisories': ['Written Notifications (2023-08-18) with Credit '
                         'Monitoring Offer'],
 'data_breach': {'data_exfiltration': 'Likely (Not Explicitly Confirmed)',
                 'number_of_records_exposed': '29,949',
                 'personally_identifiable_information': 'Yes',
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['Personal Information',
                                              'Financial Information (Account '
                                              'Numbers)']},
 'date_detected': '2023-07-12',
 'description': 'The Maine Office of the Attorney General reported that Mauch '
                'Chunk Trust Company experienced a data breach resulting from '
                'an external system breach, specifically linked to the MOVEit '
                'software vulnerability. The breach potentially affected '
                "29,949 individuals' personal and financial information, "
                'including account numbers. Written notifications were issued '
                'to affected individuals on August 18, 2023, offering 12 '
                'months of credit monitoring and identity theft protection '
                'services.',
 'impact': {'data_compromised': ['Personal Information',
                                 'Financial Information (Account Numbers)'],
            'identity_theft_risk': 'High (Credit Monitoring Offered)',
            'payment_information_risk': 'High (Account Numbers Compromised)',
            'systems_affected': ['MOVEit Software']},
 'post_incident_analysis': {'root_causes': ['Exploitation of MOVEit Software '
                                            'Vulnerability']},
 'references': [{'source': 'Maine Office of the Attorney General'}],
 'regulatory_compliance': {'regulatory_notifications': ['Maine Office of the '
                                                        'Attorney General']},
 'response': {'communication_strategy': ['Written Notifications to Affected '
                                         'Individuals (2023-08-18)'],
              'remediation_measures': ['Credit Monitoring Services (12 months)',
                                       'Identity Theft Protection Services']},
 'title': 'Mauch Chunk Trust Company Data Breach via MOVEit Vulnerability',
 'type': 'Data Breach',
 'vulnerability_exploited': 'MOVEit Software Vulnerability'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.