North Haven-based Connex Credit Union, which has over $1 billion in assets and serves more than 70,000 members across eight branches, mailed letters to its members last week informing them of the breach, in which sensitive personal information in its systems may have been accessed.
Already a Subscriber? Log in
Get Instant Access to This Article
Subscribe to Hartford Business Journal and get immediate access to all of our subscriber-only content and much more.
- Critical Hartford and Connecticut business news updated daily.
- Immediate access to all subscriber-only content on our website.
- Bi-weekly print or digital editions of our award-winning publication.
- Special bonus issues like the Hartford Book of Lists.
- Exclusive ticket prize draws for our in-person events.
Click here to purchase a paywall bypass link for this article.
One of the state’s largest credit unions has warned its customers about a data breach that occurred in June.
North Haven-based Connex Credit Union, which has over $1 billion in assets and serves more than 70,000 members across eight branches, mailed letters to its members last week informing them of the breach, in which sensitive personal information in its systems may have been accessed.
In a statement email to Hartford Business Journal, Frank Mancini, Connex president and CEO, acknowledged the cybersecurity incident and said the credit union is in the process “of notifying our members and offering them complimentary credit monitoring and identity protection services”
Mancini added that, “Importantly, we have no reason to believe member accounts or funds were impacted or otherwise subject to unauthorized access.”
According to a sample notice posted on the California Attorney General’s website, Connex’s letter to its members states that the credit union "experienced unusual activity in our cyber environment on June 3, 2025, and immediately started an investigation using independent experts to assist.”
The sample letter does not identify the "independent experts” the bank hired to help with its investigation.
The investigation determined that some of Connex’s files “had been accessed or downloaded without authorization between June 2 and 3, 2025,” the sample letter continues.
Connex said it then worked to determine whose information was potentially affected, and on July 27 completed the review and learned that some members’ “personal information may have been involved in the incident.”
The information affected may have included names, account numbers, Social Security numbers and/or other government ID used to open an account, the credit union stated, adding, “Please note we have no reason to believe this incident involved unauthorized access to member accounts or funds.”
The sample letter to members also states that, once the breach was discovered, Connex took steps to implement measures “to enhance network security and minimize the risk of a similar incident occurring in the future.”
The credit union also states that it notified the National Credit Union Administration and federal law enforcement about the breach.
"We greatly appreciate the patience and understanding of our members during this time,” Mancini added in his statement. “We have worked to investigate the root cause of this interruption, and have taken corrective actions to keep it from happening again. As always, we are committed to being transparent and keeping members and employees informed as we move forward.”
Connex is also offering its members access to “Single Bureau Credit Monitoring/Single Bureau Credit Report/Single Bureau Credit Score services” at no charge, as well as “proactive fraud assistance” provided by Cyberscout, a TransUnion company that specializes in fraud assistance and remediation services.
Connex has not posted a public notice of the breach on its website, and the breach is not listed on the U.S. Department of Health and Human Services
Office for Civil Rights’ online breach portal, which lists data breaches reported nationwide.
The credit union does have a “scam alert” posted at the top of the home page for its website, which warns members to “Please be aware that scammers are calling/texting members impersonating Connex employees. Connex will never call you and ask for PINs, passcodes, or account numbers. If you receive a suspicious call or text, hang up and call us directly at 1-800-CR-UNION (203-603-5700).”
In addition to its headquarters at 412 Washington Ave. (Route 5) and its main branch at 404 Washington Ave. in North Haven, Connex also has branches in Branford, Guilford, Hamden, Meriden, Monroe, New Haven and Orange.
