/security

News and resources on cyber and physical threats to banks and fintechs worldwide.

Bank of America leak exposes business details of PPP relief applicants

Bank of America accidentally exposed the personal details of applicants applying for loans from the Paycheck Protection Program during a test submission to the US Small Business Administration system.

  1 Be the first to comment

Bank of America leak exposes business details of PPP relief applicants

Editorial

This content has been selected, created and edited by the Finextra editorial team based upon its relevance and interest to our community.

Bank of America notified the California Attorney General's office of the breach, which occurred on 22 April.

The bank has not disclosed the number of customer impacted by the leak, although it says it has processed 305,000 PPP relief applications with the SBA.

"During testing, we discovered information included in your application may have been visible for a limited time period to a limited number of other lenders and their vendors authorized by the SBA to participate in the program," the bank wrote in its filing. "There is no indication that your information was viewed or misused by these lenders or their vendors. And your information was not visible to other business clients applying for loans, or to the public, at any time."

Nonethless, the bank is offering all impacted customers complimentary two year membership in an identity theft protection service provided by Experian. It is also advising clients to scan credit reports and account statements over the next 12 to 24 months for unauthorised transaction or instances of identity theft.

Data exposed included business address and tax identification number, and personal information such Social Security Number, phone number, email address and citizenship.

In March, the SBA reported that a flaw in an online application portal for its Economic Injury Disaster Loan programme exposed the personal data of approximately 8,000 loan applicants.

Sponsored [On-Demand Webinar] Global Workforce Payments: Mastering a world of complexity

Comments: (0)

[On-Demand Webinar] Exploring the ethics of AI in bankingFinextra Promoted[On-Demand Webinar] Exploring the ethics of AI in banking