---
schema_version: "secwatch.filing_event.v1"
accession: "0001654954-25-000798"
form_type: "8-K/A"
ticker: null
cik: "0000933738"
company_name: "ENGLOBAL CORP"
filed_at: "2025-01-27T23:59:59+00:00"
generated_at: "2026-05-27T09:56:14.957743+00:00"
event_type: "cyber"
sentiment: "negative"
materiality_score: 0.7
calibrated_materiality_score: 0.7
confidence: "high"
source: SEC EDGAR
---

# ENGlobal discloses ransomware-like cyber incident; operations disrupted six weeks, sensitive personal info accessed

## Summary
- Threat actor encrypted data files and accessed sensitive personal information on Nov 25, 2024.
- Business applications and financial/operating systems disrupted for approximately six weeks.
- As of Jan 27, 2025, operations fully restored; threat actor access eliminated.
- Company will notify affected parties and regulators as required by law; believes incident not material.
- Remediation includes strengthening IT system and surveillance to prevent future incidents.

## SEC filing metadata
- accession: 0001654954-25-000798
- form_type: 8-K/A
- cik: 0000933738
- company_name: ENGLOBAL CORP
- filed_at: 2025-01-27T23:59:59+00:00
- event_type: cyber
- sentiment: negative
- materiality_score: 0.7
- calibrated_materiality_score: 0.7
- confidence: high
- sec_items: 1.05
- EDGAR index: https://www.sec.gov/Archives/edgar/data/933738/000165495425000798/0001654954-25-000798-index.htm
- EDGAR primary document: https://www.sec.gov/Archives/edgar/data/933738/000165495425000798/eng_8ka.htm

## Machine-readable alternates
- HTML: https://secwatch.observer/filing/0001654954-25-000798
- JSON: https://secwatch.observer/filing/0001654954-25-000798.json
- Plain text: https://secwatch.observer/filing/0001654954-25-000798.txt

## Key facts
- Cybersecurity Incidents
  ENGLOBAL CORP disclosed a cybersecurity incident: A threat actor illegally accessed the Company’s IT system, encrypted some data files, and accessed sensitive personal information; operations were limited for approximately six weeks. Impact: The incident has not had a material impact and is not reasonably likely to have a material impact on the Company's financial condition and results of operations. Company determined it not material. Discovered 2024-11-25.
  - Nature: A threat actor illegally accessed the Company’s IT system, encrypted some data files, and accessed sensitive personal information; operations were limited for approximately six weeks.
  - Impact: The incident has not had a material impact and is not reasonably likely to have a material impact on the Company's financial condition and results of operations.
  - Materiality: not material
  - Discovery: 2024-11-25
  source text: Based on the information available to the Company as of the date hereof, the Company believes that the incident has not had a material impact and is not reasonably likely to have a material impact, on the Company, including the Company’s financial condition and results of operations, except as disclosed herein.
  evidence_url: https://www.sec.gov/Archives/edgar/data/933738/000165495425000798/0001654954-25-000798-index.htm

This AI-assisted summary is a reading aid. Review the linked SEC EDGAR filing before relying on any specific claim.
