iRhythm Holdings, Inc. disclosed a cybersecurity incident: Unauthorized activity involving data maintained on certain third-party-hosted business applications, obtained through social engineering, resulting in exfiltration of proprietary data, patient protected health information and other personal information. Impact: The Company has not identified any impact to its products, clinical or medical device systems, patient safety, manufacturing and distribution operations, financial reporting systems, or the ability to meet patient needs. The Company believes the incident is not reasonably likely to have a material i. Company determined it material. Discovered 2026-06-08.
“On June 10, 2026, the Company determined that the incident is material in light of the volume of the potentially affected data.”
WSTWEST PHARMACEUTICAL SERVICES INC
WEST PHARMACEUTICAL SERVICES INC disclosed a cybersecurity incident: data exfiltrated by unauthorized party and systems encrypted. Impact: no material impact on financial guidance; fully operational. Company determined it not material. Discovered 2026-05-04.
“Based on the investigation to date and information currently available, the Company believes that the incident has not had, and is not reasonably likely to have, a material impact on the Company’s 2026 second-quarter and full-year financial guidance.”
WSTWEST PHARMACEUTICAL SERVICES INC
WEST PHARMACEUTICAL SERVICES INC disclosed a cybersecurity incident: Cybersecurity attack involving data exfiltration by an unauthorized party and encryption of certain systems. Impact: Temporarily disrupted business operations globally; core enterprise systems restored; shipping, receiving, and manufacturing restarted at some sites with restoration of remaining sites in process; material impact on financial condition and results of operations not yet determined. Company determined it material. Discovered 2026-05-04.
“On May 7, 2026, West Pharmaceutical Services, Inc. (the “Company”) determined that the Company has experienced a material cybersecurity attack, in which certain data was exfiltrated by an unauthorized party and certain systems were encrypted.”
BTMBitcoin Depot Inc.
Bitcoin Depot Inc. disclosed a cybersecurity incident: Unauthorized party gained access to certain information technology systems, obtained control of credentials associated with digital asset settlement accounts, and transferred approximately 50.903 Bitcoin from Company-controlled wallets without authorization. Impact: Incident has not had a material impact on operations; preliminary estimate of loss of approximately $3.665 million; full impact not yet determined. Company determined it material. Discovered 2026-03-23.
“On March 23, 2026, Bitcoin Depot Inc. (the “Company”) discovered that an unauthorized party gained access to certain of its information technology systems.”
CCLDCareCloud, Inc.
CareCloud, Inc. disclosed a cybersecurity incident: temporary network disruption in the CareCloud Health division partially impacting functionality and data access to 1 of 6 electronic health record environments for approximately 8 hours, caused by an unauthorized third party. Impact: the incident has not had a material impact on operations as of the filing date, but potential consequences include remediation and response costs, legal, regulatory and notification-related matters, and possible effects on patients, customers, counterparties, reputation and operations. Company determined it material. Discovered 2026-03-16.
“On March 24, 2026, the Company nevertheless determined that the incident is material in light of the sensitivity of the potentially affected information and the potential consequences of the incident, including remediation and response costs, legal, regulatory and notification-related matters, and possible effects on patients, customers, counterparties, reputation and operations.”
TRTTRIO-TECH INTERNATIONAL
TRIO-TECH INTERNATIONAL disclosed a cybersecurity incident: ransomware incident resulting in encryption of certain files and later escalation leading to unauthorized disclosure of certain Company data. Impact: the full scope and impact is not yet known; incident has not resulted in any material disruption to the subsidiary’s operations or the Company’s business, and the Company does not expect a material impact on financial results for the quarter ending March 31, 2026. Materiality is still being assessed. Discovered 2026-03-11.
“On March 11, 2026, Trio-Tech International (“Company”) identified and responded to a cybersecurity incident in one of its subsidiaries (“subsidiary”) in Singapore. The subsidiary experienced a ransomware incident that resulted in encryption of certain files within the Company’s network.”
UFPTUFP TECHNOLOGIES INC
UFP TECHNOLOGIES INC disclosed a cybersecurity incident: unauthorized activity involving its information technology systems, impacting billing and label making, with some data exfiltrated. Impact: The incident has not had a material impact on the Company’s financial systems, operations or financial condition; operations continued in all material respects. Company determined it not material. Discovered 2026-02-14.
“As of the date hereof, the incident has not had a material impact on the Company’s financial systems, operations or financial condition.”
WYTCWYTEC INTERNATIONAL INC
WYTEC INTERNATIONAL INC disclosed a cybersecurity incident: A bad actor defaced the company's website (wytecintl.com) and did so again after restoration. The company took the website down and restored IT systems. The investigation was closed without identifying the source. Impact: The company restored IT systems and continues to work through minor operational impacts. The impacts are primarily costs associated with rebuilding the website on a new server and hosting platform and enhancing security protocols. Materiality is still being assessed. Discovered 2025-08-25.
“On August 25, 2025, Wytec International, Inc. (the “Company”) became aware of a cybersecurity incident in which a bad actor published a defaced website at the Company’s web address, wytecintl.com.”
CPNGCoupang, Inc.
Coupang, Inc. disclosed a cybersecurity incident: Cybersecurity incident involving unauthorized access to approximately 33 million accounts, with limited data saved from approximately 3,000 customer accounts; perpetrator identified, cooperating, and data deleted without third-party sharing. Impact: Coupang Corp. announced a customer compensation program of approximately 1.685 trillion won ($1.2 billion) in vouchers, to be reflected as reductions to selling price and revenue. Materiality is still being assessed. Discovered 2025-12-24.
“On December 24, 2025 (PST) and December 28, 2025 (PST), Coupang Corp., a wholly-owned Korean subsidiary (“Coupang Corp.”) of Coupang, Inc. (“Coupang, Inc.,” “our,” or “we”) (Coupang Corp., together with Coupang, Inc. and its subsidiaries and affiliates, “Coupang,”), issued updates (collectively, the “Updates”) on the cybersecurity incident (the “Incident”) disclosed in the Current Report on Form 8-K filed by Coupang, Inc. with the U.S. Securities and Exchange Commission (the “SEC”) on December 16, 2025.”
CPNGCoupang, Inc.
Coupang, Inc. disclosed a cybersecurity incident: Unauthorized access to customer accounts by a former employee, potentially exfiltrating name, phone number, delivery address, email address for up to 33 million accounts and certain order histories. Impact: Operations have not been materially disrupted; potential financial penalties from Korean regulators, and potential material financial losses from loss of revenue, remediation, litigation, etc. Materiality is still being assessed. Discovered 2025-11-18.
“On November 18, 2025, Coupang Corp. (“Coupang Corp.”), a wholly-owned Korean subsidiary of Coupang, Inc. (Coupang Corp., together with Coupang, Inc. (“Coupang, Inc.,” “our,” or “we”) and its subsidiaries and affiliates, “Coupang,”), became aware of a cybersecurity incident involving unauthorized access to customer accounts (the “Incident”).”
BAFNBayFirst Financial Corp.
BayFirst Financial Corp. disclosed a cybersecurity incident: A third-party provider of marketing services experienced a cybersecurity incident resulting in unauthorized access to personal information of some BayFirst customers. Impact: No evidence of misuse or attempted misuse to date; BayFirst cannot quantify any material impact to financial condition or operations at this time. Materiality is still being assessed. Discovered 2025-08-14.
“Based on the information available to date, personal information, including name, date of birth, and social security/tax identification numbers of some BayFirst customers were accessed without authorization.”
JCTCJEWETT CAMERON TRADING CO LTD
JEWETT CAMERON TRADING CO LTD disclosed a cybersecurity incident: unauthorized access and deployment of encryption and monitoring software by a third party to a portion of the Company's internal corporate IT systems, with exfiltration of images of video meetings and computer screens. Impact: operations may be materially impacted, potentially impacting financial results for the first quarter of fiscal 2026; disruptions and limitation of access to business applications. Materiality is still being assessed. Discovered 2025-10-15.
“On October 15, 2025, Jewett-Cameron Trading Co. Ltd. (the “Company”) learned that a threat actor had gained unauthorized access to portions of the Company’s information technology (“IT”) environment and claimed to have unlawfully accessed certain Company information and data.”
FFIVF5, INC.
F5, INC. disclosed a cybersecurity incident: A highly sophisticated nation-state threat actor gained unauthorized access to certain Company systems, maintained long-term persistent access to BIG-IP product development environment and engineering knowledge management platform, exfiltrated files including portions of BIG-IP source code and infor. Impact: The incident has not had a material impact on operations; the Company is evaluating the impact on financial condition or results of operations. No evidence of modification to software supply chain, access to CRM/financial/support case management/iHealth systems, or access to NGINX source code or F5. Materiality is still being assessed. Discovered 2025-08-09.
“As of the date of this disclosure, this incident has not had a material impact on the Company’s operations, and the Company is evaluating the impact this incident may reasonably have on its financial condition or results of operations.”
DAIODATA I/O CORP
DATA I/O CORP disclosed a cybersecurity incident: ransomware incident on certain internal IT systems, originating from a vulnerability of a third-party firewall service provider. Impact: temporarily impacted operations including internal/external communications, shipping, receiving, manufacturing production, and other support functions; estimated remediation and investigation costs of approximately $388,000 expected to have a material impact on results of operations and financial co. Company determined it material. Discovered 2025-08-16.
“estimated costs related to the Incident for remediation, restoration and investigation efforts are expected to total approximately $388,000 in expenses in the third quarter ending September 30, 2025 and will likely have a material impact on the Company’s results of operations and financial condition.”
WYTCWYTEC INTERNATIONAL INC
WYTEC INTERNATIONAL INC disclosed a cybersecurity incident: A bad actor published a defaced website at the Company's web address. Impact: Losses from website being inoperable, forced cancellation of a seminar, financial losses difficult to quantify but likely significant. Materiality is still being assessed. Discovered 2025-08-25.
“On August 25, 2025, Wytec International, Inc. (the “Company”) became aware of a cybersecurity incident in which a bad actor published a defaced website at the Company’s web address, wytecintl.com. After the Company restored the website from back-ups, the bad actor was able to deface the website again. To date the Company has received no contact from the bad actor, nor is it aware of any reason for this attack. On August 25, 2025, the Company took the website down, placing a temporary page on the site, while the Company continues to review the entire web platform, so that the site may return as soon as security has been confirmed. The Company anticipates these measures will lead to the full restoration and functionality of the Company’s website. Moving forward, the Company plans on taking appropriate steps, including implementing additional cybersecurity measures, to prevent further attacks. As a result of this incident, in addition to losses arising from the website being inoperable, t”
DAIODATA I/O CORP
DATA I/O CORP disclosed a cybersecurity incident: ransomware incident on certain internal IT systems. Impact: temporarily impacted operations including internal/external communications, shipping, receiving, manufacturing production, and various other support functions; full restoration timeline not yet known. Materiality is still being assessed. Discovered 2025-08-16.
“On August 16, 2025, Data I/O Corporation (the “Company”) experienced a ransomware incident (the “Incident”) on certain of its internal IT systems.”
UNFIUNITED NATURAL FOODS INC
UNITED NATURAL FOODS INC disclosed a cybersecurity incident: Unauthorized activity on certain information technology systems. Impact: Reduced sales volume and increased operational costs; reasonably likely to have a material impact on net income/(loss) and adjusted EBITDA for Q4 FY2025. Company determined it material. Discovered 2025-06-05.
“Based on the information currently available to the Company, management believes that the incident is reasonably likely to have a material impact on the Company’s net income/(loss) and adjusted EBITDA for the fourth fiscal quarter of 2025 compared to its internal projections prior to the incident”
NUENUCOR CORP
NUCOR CORP disclosed a cybersecurity incident: A threat actor illegally accessed the Company's information technology systems, exfiltrated limited data, and caused temporary limitations to access of applications supporting some operations. Impact: The incident has not had and is not reasonably likely to have a material impact on business operations, financial condition, or results of operations. Company determined it not material.
“The cybersecurity incident has not had a material impact, and is not reasonably likely to have a material impact, on the Company’s business operations, and has not had a material impact, and is not reasonably likely to have a material impact, on the Company’s financial condition or results of operations.”
ZCARZoomcar Holdings, Inc.
Zoomcar Holdings, Inc. disclosed a cybersecurity incident: cybersecurity incident involving unauthorized access to information systems; an unauthorized third party accessed a limited dataset containing certain personal information of approximately 8.4 million users, including names, phone numbers, car registration numbers, personal addresses and email addre. Impact: To date, the incident has not resulted in any material disruption to the Company's operations; the Company continues to evaluate scope and potential impacts including legal, financial, and reputational considerations and remediation costs. Materiality is still being assessed. Discovered 2025-06-09.
“On June 9, 2025, Zoomcar Holdings, Inc. (the “Company”) identified a cybersecurity incident involving unauthorized access to its information systems.”
COINCoinbase Global, Inc.
Coinbase Global, Inc. disclosed a cybersecurity incident: The threat actor obtained customer account information (name, address, phone, email, masked SSN, masked bank account numbers, government ID images, account data including balance snapshots and transaction history, and limited corporate data) by paying multiple contractors or employees in support rol. Impact: The company has not experienced material operational impacts as of the date hereof; full financial impact is still being assessed; preliminary estimated expenses $180 million to $400 million for remediation costs and voluntary customer reimbursements. Materiality is still being assessed. Discovered 2025-05-11.
“While Coinbase has not experienced material operational impacts from these events as of the date hereof, the full financial impact of the Incident on the Company is still in the process of being assessed.”
NUENUCOR CORP
NUCOR CORP disclosed a cybersecurity incident: Unauthorized third party access to certain information technology systems. Impact: Temporarily and proactively halted certain production operations at various locations; currently in the process of restarting affected operations. Materiality is still being assessed.
“As the investigation of the incident is ongoing, the Company will continue to monitor the timing and materiality of the incident.”
STSensata Technologies Holding plc
Sensata Technologies Holding plc disclosed a cybersecurity incident: ransomware incident that encrypted certain devices in the Company’s network, with evidence that files were taken from the environment. Impact: temporarily impacted operations including shipping, receiving, manufacturing production, and various other support functions. Company determined it not material. Discovered 2025-04-06.
“Sensata does not expect this incident to have a material impact on the Company’s financial results and operations for the three months ended June 30, 2025; however, the full scope and impact of this incident is not yet known”
LEELEE ENTERPRISES, Inc
LEE ENTERPRISES, Inc disclosed a cybersecurity incident: cybersecurity attack by threat actors who unlawfully accessed the Company’s network, encrypted critical applications, and exfiltrated certain files. Impact: the Incident is likely to have a material impact on the Company’s financial condition and results of operations; certain back-office functions remain delayed including billing, collections, and payments. Company determined it material. Discovered 2025-02-03.
“While the full scope of the financial impact is not yet known, the Incident is likely to have a material impact on the Company’s financial condition and results of operations.”
NPKNATIONAL PRESTO INDUSTRIES INC
NATIONAL PRESTO INDUSTRIES INC disclosed a cybersecurity incident: system outage caused by a cybersecurity incident. Impact: temporarily impacted operations, including shipping and receiving, some manufacturing processes, and various other back office functions. Materiality is still being assessed. Discovered 2025-03-01.
“On March 1, 2025, the Registrant experienced a system outage caused by a cybersecurity incident.”
LEELEE ENTERPRISES, Inc
LEE ENTERPRISES, Inc disclosed a cybersecurity incident: cybersecurity attack resulting in systems outage, encryption of critical applications, and exfiltration of files. Impact: impacted operations including distribution of products, billing, collections, and vendor payments; print publication delays; partial online limitations; weekly and ancillary products representing five percent of total operating revenue not yet restored; anticipated phased recovery over several weeks. Company determined it material. Discovered 2025-02-03.
“While the full scope of the financial impact is not yet known, the incident is reasonably likely to have a material impact on the Company’s financial condition or results of operations.”
ENGLOBAL CORP
ENGLOBAL CORP disclosed a cybersecurity incident: A threat actor illegally accessed the Company’s IT system, encrypted some data files, and accessed sensitive personal information; operations were limited for approximately six weeks. Impact: The incident has not had a material impact and is not reasonably likely to have a material impact on the Company's financial condition and results of operations. Company determined it not material. Discovered 2024-11-25.
“Based on the information available to the Company as of the date hereof, the Company believes that the incident has not had a material impact and is not reasonably likely to have a material impact, on the Company, including the Company’s financial condition and results of operations, except as disclosed herein.”
DNUTKrispy Kreme, Inc.
Krispy Kreme, Inc. disclosed a cybersecurity incident: unauthorized activity on a portion of its information technology systems. Impact: certain operational disruptions including online ordering in parts of the United States; expected to have material impact on results of operations and financial condition. Company determined it material. Discovered 2024-11-29.
“As of the date of this filing, the incident has had and is reasonably likely to have a material impact on the Company’s business operations until recovery efforts are completed.”
ENGLOBAL CORP
ENGLOBAL CORP disclosed a cybersecurity incident: A threat actor illegally accessed the Company’s information technology system and encrypted some of its data files. Impact: Access to the Company’s IT system is limited to essential business operations; the timing of restoration of full access remains unclear. Materiality is still being assessed. Discovered 2024-11-25.
“On November 25, 2024, ENGlobal Corporation (the “Company”) became aware of a cybersecurity incident.”
iLearningEngines, Inc.
iLearningEngines, Inc. disclosed a cybersecurity incident: A threat actor illegally accessed the Company’s environment and certain files on its network, misdirected a $250,000 wire payment, and deleted a number of email messages. Impact: The Company believes the cybersecurity incident will have a material impact on its operations during the quarter ended December 31, 2024 but does not expect the incident to have a material impact on full year 2024 results. Company determined it material. Discovered 2024-12-31.
“Based on the information available to date, the Company believes that the cybersecurity incident will have a material impact on its operations during the quarter ended December 31, 2024 but does not expect the incident to have a material impact on full year 2024 results.”
HALHALLIBURTON CO
HALLIBURTON CO disclosed a cybersecurity incident: Unauthorized third party gained access to certain of the company's systems, accessed and exfiltrated information. Impact: Incident caused disruptions and limitation of access to portions of the company's business applications supporting operations and corporate functions. Company determined it not material. Discovered 2024-08-21.
“the Company believes that the incident has not had, and is not reasonably likely to have, a material impact on the Company’s financial condition or results of operations”
BSETBASSETT FURNITURE INDUSTRIES INC
BASSETT FURNITURE INDUSTRIES INC disclosed a cybersecurity incident: unauthorized occurrences on a portion of IT systems. Impact: disruption to operations including interrupted manufacturing and delayed order fulfillment; subsequently restored. Company determined it not material. Discovered 2024-07-10.
“As of the date of this Amendment, Bassett believes the impacts of the cyber incident are not, and are not reasonably likely to be, material to its financial condition and results of operations for the fiscal year.”
KTCCKEY TRONIC CORP
KEY TRONIC CORP disclosed a cybersecurity incident: Detected unauthorized third party access to portions of its information technology systems. Impact: Disruptions and limitation of access to business applications, halted domestic and Mexico operations for approximately two weeks, incurred $2.3 million additional expenses, unable to fulfill approximately $15 million of revenue during Q4. Company determined it material. Discovered 2024-05-06.
“As previously disclosed in the Original Report, on May 6, 2024, the Company detected unauthorized third party access to portions of its information technology (“IT”) systems (the “cybersecurity incident”).”
SAHSONIC AUTOMOTIVE INC
SONIC AUTOMOTIVE INC disclosed a cybersecurity incident: disruptions in access to certain information systems provided by CDK Global due to a cybersecurity incident experienced by CDK. Impact: The Incident had a material impact on the Company’s business and results of operations for the second fiscal quarter ended June 30, 2024, adversely affecting GAAP earnings per diluted share by approximately $0.64. Company determined it material. Discovered 2024-06-19.
“The Company has concluded that the Incident had a material impact on the Company’s business during and results of operations for the second fiscal quarter ended June 30, 2024 ("Q2").”
META MATERIALS INC.
META MATERIALS INC. disclosed a cybersecurity incident: A former executive officer deliberately de-activated and cancelled the renewal of the Company’s website, significantly impacting IT systems including email communications. Impact: Website was offline for a period of time and communications delayed; the Company continues to evaluate unauthorized access to sensitive and confidential information, but other than these disruptions, the incident does not appear to have had a material impact on intellectual property or customer/stak. Materiality is still being assessed. Discovered 2024-07-25.
“The Company has not yet determined whether the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
CORCencora, Inc.
Cencora, Inc. disclosed a cybersecurity incident: data exfiltration from information systems, including personally identifiable information and protected health information. Impact: no material impact on operations or financial condition. Company determined it not material. Discovered 2024-02-21.
“The incident has not had a material impact on the Company’s operations, and its information systems have continued to be fully operational. The Company does not believe the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
CWGLCrimson Wine Group, Ltd
Crimson Wine Group, Ltd disclosed a cybersecurity incident: Unauthorized third party gained access to certain information systems and exfiltrated files potentially containing sensitive personal information. Impact: Likely had a material impact on business operations, causing disruption and system shutdowns; financial condition and results of operations not materially impacted. Company determined it material. Discovered 2024-06-30.
“the Company determined that the cybersecurity incident has likely had a material impact on the Company’s business operations.”
BSETBASSETT FURNITURE INDUSTRIES INC
BASSETT FURNITURE INDUSTRIES INC disclosed a cybersecurity incident: detected unauthorized occurrences on a portion of its information technology systems, with a threat actor encrypting data files and disrupting business operations. Impact: the Company has not been and is not operating its manufacturing facilities; retail stores and e-commerce are open but order fulfillment is impacted; the incident has had and is reasonably likely to continue to have a material impact on business operations. Materiality is still being assessed. Discovered 2024-07-10.
“As of the date of this filing, the incident has had and is reasonably likely to continue to have a material impact on the Company’s business operations until recovery efforts are completed. The Company has not yet determined whether the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
TAT&T INC.
AT&T INC. disclosed a cybersecurity incident: Threat actor unlawfully accessed and copied AT&T call logs from a third-party cloud platform, exfiltrating records of customer call and text interactions for specific periods, excluding content and sensitive personal information. Impact: Incident has not had a material impact on operations and is not reasonably likely to materially impact financial condition or results of operations. Company determined it not material. Discovered 2024-04-19.
“As of the date of this filing, this incident has not had a material impact on AT&T’s operations, and AT&T does not believe that this incident is reasonably likely to materially impact AT&T’s financial condition or results of operations.”
SAHSONIC AUTOMOTIVE INC
SONIC AUTOMOTIVE INC disclosed a cybersecurity incident: The Company has experienced disruptions in its access to certain information systems provided by CDK Global due to a CDK cybersecurity incident, affecting its dealer management system (DMS), customer relationship management system (CRM), and other systems supporting sales, inventory and accounting f. Impact: The Company concluded the incident is reasonably likely to have a material impact on second fiscal quarter earnings due to a slower rate of vehicle sales; as of the date of this filing, it has not yet determined whether the incident has otherwise had or is otherwise reasonably likely to have a mater. Materiality is still being assessed. Discovered 2024-06-19.
“the Company concluded that the Incident is reasonably likely to have a material impact on the Company’s results of operation for the second fiscal quarter ended June 30, 2024 due to, among other thing, a slower rate of vehicle sales during the period since June 19, 2024 due to the impact of the Incident on the Affected Systems. As a result, the Company expects that its earnings for the second fiscal quarter ended June 30, 2024 will be adversely impacted by the Incident. As of the date hereof, the Company has not yet determined whether the Incident has otherwise had or is otherwise reasonably likely to have a material impact on the Company and its financial condition.”
GLGLOBE LIFE INC.
GLOBE LIFE INC. disclosed a cybersecurity incident. Impact: the incident has not had a material impact on the Company’s operations. Materiality is still being assessed.
“this report, the incident has not had a material impact on the Company’s operations, and the Company has not determined whether this is a material cybersecurity incident required to be reported under Item 1.05 of Form 8-K.”
KTCCKEY TRONIC CORP
KEY TRONIC CORP disclosed a cybersecurity incident: unauthorized third party access to portions of its IT systems; threat actor accessed and exfiltrated limited data including some personally identifiable information. Impact: disruptions and limitation of access to business applications; halted domestic and Mexico operations for approximately two weeks; incurred $600,000 in expenses to date; expects material impact on financial condition and results of operations for fourth quarter ending June 29, 2024. Company determined it material. Discovered 2024-05-06.
“The Company believes that the impact to profit margins due to lost production for approximately two weeks in its domestic and Mexico operations and the incremental expense measures to recover from and remediate the cybersecurity incident will have a material impact on the Company's financial condition and results of operations during the fourth quarter ending June 29, 2024.”
BRANDYWINE OPERATING PARTNERSHIP, L.P.
BRANDYWINE OPERATING PARTNERSHIP, L.P. disclosed a cybersecurity incident: Unauthorized third-party access and encryption of IT systems, exfiltration of files containing personal information. Impact: Disruptions to business applications and operations, but real estate operations continued materially; no material impact on financial condition or results of operations identified. Company determined it not material. Discovered 2024-05-01.
“the cybersecurity incident has not had a material impact on the Company’s financial condition or results of operations, and the Company does not believe the cybersecurity incident is reasonably likely to materially impact the Company’s financial condition or results of operations”
KTCCKEY TRONIC CORP
KEY TRONIC CORP disclosed a cybersecurity incident: unauthorized third party access to portions of its information technology systems. Impact: has caused disruptions and limitation of access to portions of business applications supporting operations and corporate functions, including financial and operating reporting systems. Company determined it not material. Discovered 2024-05-06.
“the Company does not believe the incident is reasonably likely to have a material impact on the Company, including its financial condition or results of operations”
BRANDYWINE OPERATING PARTNERSHIP, L.P.
BRANDYWINE OPERATING PARTNERSHIP, L.P. disclosed a cybersecurity incident: unauthorized access and deployment of encryption by a third party to a portion of the Company's internal corporate IT systems, with exfiltration of certain files. Impact: disruptions to and limitation of access to portions of business applications supporting operations and corporate functions, including financial and operating reporting systems; no material impact on operations or financial condition to date. Company determined it not material. Discovered 2024-05-01.
“the incident has not otherwise had a material impact on the Company’s operations. As of the date of this filing, the Company does not believe the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
DBXDROPBOX, INC.
DROPBOX, INC. disclosed a cybersecurity incident: Unauthorized access to the Dropbox Sign (formerly HelloSign) production environment, accessing user data such as emails, usernames, account settings, and for some users phone numbers, hashed passwords, and authentication information. Impact: No evidence of access to user account contents or payment information; incident limited to Dropbox Sign infrastructure; no material impact on overall business operations determined. Company determined it not material. Discovered 2024-04-24.
“On April 24, 2024, Dropbox, Inc. (“ Dropbox ” or “ we ”) became aware of unauthorized access to the Dropbox Sign (formerly HelloSign) production environment.”
Frontier Communications Parent, Inc.
Frontier Communications Parent, Inc. disclosed a cybersecurity incident: Third party gained unauthorized access to portions of information technology environment; likely a cybercrime group; accessed personally identifiable information. Impact: Operational disruption from containment measures could be considered material; core IT environment restored; does not believe incident is reasonably likely to materially impact financial condition or results of operations. Company determined it not material. Discovered 2024-04-14.
“The Company does not believe the incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
OSURORASURE TECHNOLOGIES INC
ORASURE TECHNOLOGIES INC disclosed a cybersecurity incident: An unauthorized third party gained access to Company data from certain information systems, and certain files were exfiltrated. Impact: The incident has not had a material impact on operations, financial systems, or financial condition, and the Company does not anticipate a material impact moving forward. Information systems are operational. Company determined it not material. Discovered 2024-03-27.
“On or about March 27, 2024, OraSure Technologies, Inc. (the “Company”) became aware of a cybersecurity incident in which an unauthorized third party gained access to Company data from certain information systems.”
RILYBRC Group Holdings, Inc.
BRC Group Holdings, Inc. disclosed a cybersecurity incident: A threat actor gained unauthorized access to certain of Targus’ file systems. Impact: Temporary interruption in the business operations of the Targus network; incident contained and systems recovery efforts are in process. Company determined it not material. Discovered 2024-04-05.
“the Company does not currently believe that this incident will materially impact the Company’s financial condition or results of operations taken as a whole.”
HZOMARINEMAX INC
MARINEMAX INC disclosed a cybersecurity incident: A third party gained unauthorized access to a limited portion of the information environment associated with the retail business, exfiltrating limited data including customer and employee personally identifiable information. Impact: Containment measures resulted in some disruption to a portion of the business; operations continued in all material respects; the company has incurred certain expenses and continues to evaluate the full impact. Materiality is still being assessed. Discovered 2024-03-10.
“as of the date of this filing, the Incident has not had a material impact on the Company’s operations, and the Company is still in the process of determining whether the Incident is reasonably likely to materially impact the Company’s financial condition or results of operations.”
SSBSouthState Bank Corp
SouthState Bank Corp disclosed a cybersecurity incident: On February 6, 2024, SouthState Bank, N.A. detected a cybersecurity incident. Upon detection, SouthState initiated incident response and business continuity protocols, took measures to disrupt unauthorized activity, conducted an investigation with a cybersecurity firm, and notified banking regulator. Impact: The cybersecurity incident had a significant impact on certain of SouthState's business processes, but as of the filing date, it has not had a material impact on SouthState's overall financial condition or results of operations, and SouthState has determined that the incident is not reasonably likel. Company determined it not material. Discovered 2024-02-06.
“it has not had a material impact on SouthState’s overall financial condition or results of operations, and SouthState has determined that the incident is not reasonably likely to have a material impact on its financial conditions or results of operations.”
Facts are extracted by an LLM and gated to those whose source quote is present verbatim in the filing text. Coverage is best-effort while backfill and monitoring mature; this is not yet a full-market index. See methodology.