Skip to content
cisonews.net

Incident · 8-K Item 1.05

River Financial reports ransomware across its server environment and files four amendments

Compiled 2026-09-27 from public records. By the cisonews.net Desk.

River Financial, the Alabama parent of River Bank & Trust, disclosed on June 25, 2026 that ransomware had been deployed across parts of its server environment. It said an unauthorized actor got in on or about June 16 and the activity was identified on or about June 19. With four amendments in five weeks, it is the most frequently amended incident in this log.

Original filing

River disabled affected administrative accounts and took systems offline.

Amendments

The July 6 amendment said some data was potentially affected and that no accounts appeared to be impacted. The July 10 amendment confirmed data had been removed. The July 17 amendment reported further legal developments, and the July 30 amendment described the bank's attempt to limit spread of the data.

Unresolved at the last amendment

Through July 30, River had not determined whether personal information was involved or whether the incident was likely to be material, and said it would amend again when it knew.

Sources

  1. 2026-06-25 · ARiver Financial Corporation, Form 8-K (SEC EDGAR), published June 25, 2026
  2. 2026-07-06 · ARiver Financial Corporation, Form 8-K/A (SEC EDGAR), published July 6, 2026
  3. 2026-07-10 · ARiver Financial Corporation, Form 8-K/A (SEC EDGAR), published July 10, 2026
  4. 2026-07-17 · ARiver Financial Corporation, Form 8-K/A (SEC EDGAR), published July 17, 2026
  5. 2026-07-30 · ARiver Financial Corporation, Form 8-K/A (SEC EDGAR), published July 30, 2026

Tier A: the organization itself, a regulator or SEC EDGAR. Tier B: established press. Each fact on this page carries its supporting passage in the page source.

See an error? Corrections are made on the page and logged on the corrections page. Send them through contact.