Skip to content
SR Bancorp Vendor Data Breach Exposes Customer Information

SR Bancorp Vendor Data Breach Exposes Customer Information

First seen 11 Jul 2026, 16:27 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •July 12, 2026 at 13:27 UTC
  • •Unauthorized access to Mercadien's servers exposed sensitive customer data.
  • •SR Bancorp's core systems remained unaffected by the incident.
  • •Customer notifications are being coordinated under legal requirements.

SR Bancorp, Inc. disclosed a data security incident involving its internal audit service provider, Mercadien, P.C. CPAs. An unauthorized actor accessed files on Mercadien's servers, potentially exposing sensitive customer data including names, social security numbers, and account numbers. The bank's core systems were not affected, and customer notifications are being issued in accordance with legal requirements. While the financial impact is currently assessed as immaterial, there are risks related to potential data misuse and reputational damage. The incident highlights the vulnerabilities associated with third-party vendors in the financial sector. Ongoing investigations may alter the risk profile for SR Bancorp and its customers.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 90d ago How this analysis works

Timeline

2026-07-10
SR Bancorp files 8-K report
SR Bancorp disclosed a data breach involving its vendor Mercadien, revealing potential exposure of customer data.
Stocktitan
2026-07-11
Minichart reports on SR Bancorp incident
Minichart highlights the potential risks and ongoing investigations related to the data breach affecting SR Bancorp customers.
Minichart.Sg

More articles in this cluster (3)