River Financial, the holding company for River Bank & Trust, says hackers deployed ransomware in June 2026, stole data from parts of its network, and later claimed to delete that data. The intrusion was discovered three days after the June 16 attack, affected portions of the server environment, and led the company to take systems offline and disable compromised administrative accounts. River says its investigation is still ongoing and it has not yet determined whether personally identifiable information was accessed or exfiltrated.
Why it matters: This is a real ransomware-related bank intrusion with confirmed data theft, even though the company says the attackers represented that they deleted the stolen files. Customers and partners should watch for breach notifications and fraud, while defenders should review admin-account security, segmentation, and incident response readiness.
Ionut Arghire
2026.08.03
100% relevant
This article appears to be the first tracked item here establishing River Financial's June 2026 ransomware attack, confirmed data exfiltration, and the company's statement that the threat actor deleted the stolen data.
← Back to all stories