Incident · 8-K Item 1.05
BayFirst National Bank reports customer data exposed at a marketing vendor
Compiled 2026-09-27 from public records. By the cisonews.net Desk.
BayFirst Financial, the Florida parent of BayFirst National Bank, disclosed on October 30, 2025 that an incident at a third-party marketing services provider had exposed personal information of some bank customers. The bank was told of the vendor's incident on August 14; the vendor confirmed customer data was involved on October 28, two days before the filing.
What BayFirst reported
The exposure was confirmed later. BayFirst said the incident stayed within the vendor's environment and listed the data involved.
The bank reported no evidence of misuse and said affected customers would be notified directly. It could not yet quantify any material impact. The Item 1.05 disclosure shared a filing with the company's third-quarter earnings release.
Not in the filing
BayFirst did not name the vendor or give the number of customers affected.
Sources
- 2025-10-30 · ABayFirst Financial Corp., Form 8-K (SEC EDGAR), published October 30, 2025
Tier A: the organization itself, a regulator or SEC EDGAR. Tier B: established press. Each fact on this page carries its supporting passage in the page source.
See an error? Corrections are made on the page and logged on the corrections page. Send them through contact.