HomeSample Page

Sample Page Title


Marquis information breach impacts over 74 US banks, credit score unions

Monetary software program supplier Marquis Software program Options is warning that it suffered an information breach that impacted dozens of banks and credit score unions throughout the US.

Marquis Software program Options offers information analytics, CRM instruments, compliance reporting, and digital advertising and marketing providers to over 700 banks, credit score unions, and mortgage lenders.

In information breach notifications filed with US Lawyer Normal places of work, Marquis says it suffered a ransomware assault on August 14, 2025, after its community was breached via its SonicWall firewall.

This allowed the hackers to steal “sure information from its techniques” through the assault.

“The assessment decided that the information contained private info obtained from sure enterprise clients,” reads a notification filed with Maine’s AG workplace.

“The private info doubtlessly concerned for Maine residents contains names, addresses, telephone numbers, Social Safety numbers, Taxpayer Identification Numbers, monetary account info with out safety or entry codes, and dates of start.”

Marquis is now submitting notifications on behalf of its clients, in some instances breaking down the variety of folks impacted per financial institution in a state. These notifications state that related information was uncovered within the assault for purchasers in different U.S. states.

In accordance with notifications filed in Maine, Iowa, and Texas, over 400,000 clients have been impacted from the next 74 banks and credit score unions.


























1st Northern California Credit score UnionAbbott Laboratories Workers Credit score UnionBenefit Federal Credit score Union
Agriculture Federal Credit score UnionAlltrust Credit score UnionBayFirst Nationwide Financial institution
Bellwether Group Credit score UnionC&N Financial institutionCape Cod 5
Capital Metropolis Financial institution GroupCentral Virginia Federal Credit score UnionClark County Credit score Union
Group 1st Credit score UnionGroup Bancshares of Mississippi, Inc.Cornerstone Group Monetary Credit score Union
CPM Federal Credit score UnionCSE Federal Credit score UnionCU Hawaii Federal Credit score Union
d/b/a Group Financial institutionDiscovery Federal Credit score UnionEarthmover Credit score Union
Educators Credit score UnionPower Capital Credit score UnionConstancy Cooperative Financial institution
First Group Credit score UnionFirst Northern Financial institution of DixonFlorida Credit score Union
Fort Group Credit score UnionFounders Federal Credit score UnionFreedom of Maryland Federal Credit score Union
Gateway First Financial institutionGenerations Federal Credit score UnionGesa Credit score Union
Glendale Federal Credit score UnionHope Federal Credit score UnionIBERIABANK n/ok/a First Horizon Financial institution
Industrial Federal Credit score UnionInside FederalInside Federal Credit score Union
Interra Credit score UnionJonestown Financial institution & Belief Co.Kemba Monetary Credit score Union
Liberty First Credit score UnionMaine State Credit score UnionMarket USA FCU
MemberSource Credit score UnionMichigan First Credit score UnionMIT Federal Credit score Union
New Orleans Firemen’s Federal Credit score UnionNew Peoples Financial institutionNewburyport 5 Cents Financial savings Financial institution
NIH Federal Credit score UnionPasadena Federal Credit score UnionPathways Monetary Credit score Union
Peake Federal Credit score UnionPelican Credit score UnionPentucket Financial institution
PFCU Credit score UnionQNB Financial institutionSafety Credit score Union
Seneca Financial savingsServU Credit score UnionStonehamBank Cooperative
Suncoast Credit score UnionTexoma Group Credit score UnionThomaston Financial savings Financial institution
Time Financial institutionTowneBankUlster Financial savings Financial institution
College Credit score UnionValley Robust Credit score UnionWesterra Credit score Union
Whitefish Credit score UnionZing Credit score Union 

At the moment, Marquis says that there isn’t a proof that information has been misused or printed wherever.

Nevertheless, as beforehand reported by Comparitech, a now-deleted submitting by Group 1st credit score union claimed that Marquis paid a ransomm, which is finished to forestall the leaking and abuse of stolen information.

“Marquis paid a ransomware shortly after 08/14/25. On 10/27/25 C1st was notified that nonpublic private info associated to C1st members was included within the Marquis breach,” reads the deleted notification seen by Comparitech.

Whereas the corporate’s information breach notifications state solely that it has “taken steps to cut back the chance of this sort of incident,” a submitting by CoVantage Credit score Union with the New Hampshire AG shares additional particulars about how the corporate is growing safety.

This notification states that Marquis has now enhanced its safety controls by doing the next:

  • Making certain that each one firewall gadgets are totally patched and updated,
  • Rotating passwords for native accounts,
  • Deleting previous or unused accounts,
  • Making certain that multi-factor authentication is enabled for all firewall and digital non-public community (“VPN”) accounts,
  • Growing logging retention for firewall gadgets, (
  • Making use of account lock-out insurance policies on the VPN for too many failed logins,
  • Making use of geo-IP filtering to solely permit connections from particular international locations wanted for enterprise operations, and
  • Making use of insurance policies to routinely block connections to/from recognized Botnet Command and Management servers on the firewall. 

These steps point out that the menace actors possible gained entry to the corporate community via a SonicWall VPN account, a recognized tactic utilized by some ransomware gangs, particularly Akira ransomware.

Focusing on SonicWall firewalls

Whereas Marquis has not shared any additional particulars in regards to the ransomware assault, the Akira ransomware gang has been concentrating on SonicWall firewalls to achieve preliminary entry to company networks since no less than early September 2024.

Akira began breaching SonicWall SSL VPN gadgets in 2024 by exploiting the CVE-2024-40766 vulnerability, which allowed attackers to steal VPN usernames, passwords, and seeds to generate one-time passcodes.

Even after SonicWall patched the bug, many organizations did not correctly reset their VPN credentials, permitting Akira to proceed breaching patched gadgets with beforehand stolen credentials.

A current report exhibits the group remains to be signing in to SonicWall VPN accounts even when MFA is enabled, suggesting the attackers stole OTP seeds through the earlier exploitation.

As soon as Akira will get in via the VPN, they transfer shortly to scan the community, carry out reconnaissance, acquire elevated privileges within the Home windows Lively Listing, and steal information earlier than deploying ransomware.

Damaged IAM is not simply an IT downside – the impression ripples throughout your complete enterprise.

This sensible information covers why conventional IAM practices fail to maintain up with fashionable calls for, examples of what “good” IAM appears like, and a easy guidelines for constructing a scalable technique.

Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles