Bank of America Data Breach History
WebsiteBank of America Corporation is an American multinational investment bank and financial services company. Fortune 500.
This page shows all data breaches of Bank of America. View the complete breach timeline, records exposed, root causes, and AI breach risk score. BreachHistory tracks disclosed data breaches worldwide.
Data Breach Timeline — All Bank of America Breaches
- 2023 2023 LockBit Infosys vendor breach — 57k 57.0K records Share
- 2014 2014 — Bank of America: name, ssn Location of breached information: Website… 26 records Share
- 2011 2011 — Bank of America: An unknown number of customers were able to see the… Unknown records Share
- 2010 2010 — Bank of America: An IT staff member of Bank of America pled guilty… Unknown records Share
- 2009 2009 — Bank of America: Charlotte-based BofA (NYSE:BAC) and Citigroup… Unknown records Share
Bank of America Data Breach Summary
This page tracks the Bank of America data breach history and cybersecurity incidents affecting Bank of America (United States). BreachHistory currently indexes 9 publicly disclosed or catalogued incidents spanning 2005 through 2023, with approximately 1.3 million records reported as exposed across all indexed events. These totals may include overlapping datasets or third-party estimates and should not be interpreted as unique affected users.
The Bank of America breach timeline includes major data breaches, cyber attacks, data leaks, credential exposures, API abuse, and other security incidents. Each incident provides details on the estimated records exposed, attack method, affected data types, and supporting public sources. Currently, 0 incidents are company-confirmed.
Largest Bank of America Data Breaches
The largest indexed incidents include the 2005 — Bank of America: Lost / stolen device, 1,200,000 records, the 2023 LockBit Infosys vendor breach — 57k, and the 2014 — Bank of America: name, ssn Location of breached information: Website…. Record counts originating from threat actors or leak sites should be treated as estimates unless confirmed by Bank of America or a regulator. Below is the list of large data breaches:
- 2005 2005 — Bank of America: Lost / stolen device, 1,200,000 records — about 1.2M records exposed · Catalogued incident
- 2023 2023 LockBit Infosys vendor breach — 57k — about 57.0K records exposed · Catalogued incident
- 2014 2014 — Bank of America: name, ssn Location of breached information: Website… — about 26 records exposed · Catalogued incident
What Information Was Exposed?
Depending on the incident, exposed data may include email addresses, Social Security numbers and national IDs, names, physical addresses, health and medical (PHI) records, and other personal information (PII). The exact data varies between incidents, so review each breach page before assuming your information was affected.
Bank of America Data Breach 2026
At the time of this update, no Bank of America data breach has been catalogued for 2026. New incidents are added as official disclosures, regulatory filings, or credible cybersecurity reports become available.
What To Do If You Were Affected
If you believe your account may have been involved in a Bank of America data breach, change any reused passwords, enable multi-factor authentication (MFA), monitor your account for suspicious activity, and be cautious of phishing emails or fake breach notifications.
This Bank of America breach history is maintained by BreachHistory using public disclosures, regulatory filings, security research, and clearly labelled third-party claims. For the complete breach timeline, records exposed, incident details, and AI Breach Risk Score, explore the sections on this page.