The Crystal Valley Financial Corporation dba First State Bank of Middlebury Data Breach: Incident Facts and Free Case Review
Crystal Valley Financial Corporation, doing business as First State Bank of Middlebury, is a financial institution that provides banking, lending, and wealth management services to its customers. As a financial entity, the company typically collects and maintains highly sensitive personal and financial data, including government-issued identification, account numbers, and credit history, to facilitate its business operations. This data breach was officially reported to the Indiana Attorney General in 2026, triggering a formal notification process for those impacted. If you received a data breach notification letter from the bank, it indicates that your personal or financial information was involved in this incident. We recommend reviewing the letter carefully to understand what specific data was compromised and to follow the provided instructions for monitoring your accounts.
- State
- Indiana
- Breach date
- October 30, 2025
- Reported
- January 28, 2026
What to do if you were affected
These general steps can help limit the risk of identity theft and fraud after any data breach.
Stay alert to targeted scams
Be cautious of calls, texts, or emails that reference this breach. Legitimate organizations won't ask you to confirm sensitive details through an unsolicited message.
Keep your notification letter
Save the notice you received. It documents that your information was involved and is often needed to enroll in any credit monitoring offered or to join a related legal claim.
Related data breach cases
- Bozeman School District
- Teamsters Local 17
- Bank
- American Vanguard Corporation
- Graphic Information Systems Inc
- Arcadia of Benton LLC
- Arcadia of Bowling Green LLC
- Arcadia of Clarksville LLC
- Arcadia of Elizabethtown LLC
- Arcadia of Louisville LLC
- Hahn Loeser & Parks LLP
- Mather & Co CPAs LLC
- Graymont Inc
- Active Leadgen LLC dba ukvisaportal.com