---
schema_version: "secwatch.filing_event.v1"
accession: "0001104659-23-077393"
form_type: "8-K"
ticker: "HTH"
cik: "0001265131"
company_name: "Hilltop Holdings Inc."
filed_at: "2023-07-03T23:59:59+00:00"
generated_at: "2026-06-13T13:07:34.593592+00:00"
event_type: "cyber"
sentiment: "negative"
materiality_score: 0.85
calibrated_materiality_score: 0.85
confidence: "high"
source: SEC EDGAR
---

# Hilltop Holdings data breach at vendor exposes SSNs, account numbers of substantially all bank customers

## Summary
- Third-party vendor of PlainsCapital Bank confirmed June 27 that SSNs and account numbers for substantially all customers were likely taken via MOVEit zero-day vulnerability.
- No indication of impact on Hilltop's own systems or customer access credentials; no material business interruption.
- Bank will offer complimentary credit monitoring and identity restoration services to affected customers.
- Company expects to incur expenses for response, remediation, and investigation; faces potential litigation and regulatory scrutiny.

## SEC filing metadata
- accession: 0001104659-23-077393
- form_type: 8-K
- ticker: HTH
- cik: 0001265131
- company_name: Hilltop Holdings Inc.
- filed_at: 2023-07-03T23:59:59+00:00
- event_type: cyber
- sentiment: negative
- materiality_score: 0.85
- calibrated_materiality_score: 0.85
- confidence: high
- sec_items: 8.01, 9.01
- EDGAR index: https://www.sec.gov/Archives/edgar/data/1265131/000110465923077393/0001104659-23-077393-index.htm
- EDGAR primary document: https://www.sec.gov/Archives/edgar/data/1265131/000110465923077393/tm2320416d1_8k.htm

## Machine-readable alternates
- HTML: https://secwatch.observer/filing/0001104659-23-077393
- JSON: https://secwatch.observer/filing/0001104659-23-077393.json
- Plain text: https://secwatch.observer/filing/0001104659-23-077393.txt

This AI-assisted summary is a reading aid. Review the linked SEC EDGAR filing before relying on any specific claim.
