River Bank & Trust's parent company, River Financial Corporation, claims that hackers have deleted stolen data from a June ransomware attack, which breached parts of the bank's server environment starting on June 16. The attack was detected three days later, and an investigation is still underway. Despite the ongoing probe, the bank asserts that it has obtained assurances from the attackers that the exfiltrated data was deleted1. This development may provide some relief to affected parties, but the incident highlights the need for robust security measures to prevent similar breaches. The bank's ability to negotiate with the attackers and obtain assurances about the data's deletion is notable, but it does not mitigate the risks associated with ransomware attacks. So what matters to practitioners is that even when attackers provide assurances, the integrity of sensitive data can never be fully guaranteed, making proactive security measures essential.
River Bank obtained assurances from the attackers that the stolen data in the June attack was deleted
⚠️ Critical Alert
Why This Matters
The breach began on June 16 and was detected three days later, when the company found ransomware had been deployed on affected systems.
References
- SecurityAffairs. (2026, August 3). River Bank obtained assurances from the attackers that the stolen data in the June attack was deleted. *SecurityAffairs*. https://securityaffairs.com/196537/cyber-crime/river-bank-obtained-assurances-from-the-attackers-that-the-stolen-data-in-the-june-attack-was-deleted.html
Original Source
SecurityAffairs
Read original →