On June 14, 2023, banking provider 1st Source appeared on the leak site operated by the Clop ransomware group. The listing states that internal files were exfiltrated during a ransomware attack. The company, which provides personal and business banking services, has not publicly quantified how many customer records may be affected, and the leak-site posting does not detail the volume or specific categories of data taken.
Already exposed?
You can’t unleak data. You can take away what it’s worth.
A leaked record is where it starts, not where it ends. What turns it into your front door is the look-up sites publishing your address beside your name — and those are what an AI reads when somebody asks about you. The free scan shows you both. We write to 582 companies.
See what is exposed about you — free scan →Not ready yet? Run a free breach check on this email
We’ll check it against 13.1B+ leaked records right now — no account needed. Continuous monitoring & alerts are part of Protection.
Details in the Primary Listing
The Clop leak site entry for 1stsource.com, accessible via the onion address hosted on ransomware.live, states that the actor obtained internal files after breaching the organization’s network. No exact record count is provided, nor does the posting specify which systems were initially compromised. The disclosure indicates the data was taken prior to the public listing date of June 14, 2023, consistent with Clop’s typical practice of exfiltrating information before encrypting systems or demanding payment. Because the primary source does not list sample documents or describe the contents, the precise sensitivity of the stolen material remains unknown to the public.
Why This Matters for You and Your Family
When a bank or financial services company loses control of internal files, the exposure can reach far beyond corporate records. Customer names, addresses, account numbers, Social Security numbers, tax forms, loan applications, and transaction histories are often stored in the very files that ransomware groups target. Even if the leak site does not publish every document, the mere confirmation that internal files were allegedly exfiltrated means your personal banking data may now sit in an attacker’s archive. For families, this creates immediate financial fraud risk and long-term identity theft exposure that can affect credit scores, tax filings, and employment background checks for years.
Clop’s public listing of 1st Source therefore functions as a warning that anyone who has ever opened an account, applied for a loan, or used online banking services at the institution should treat their information as potentially compromised.