HYPERTHERM, INC.
bd_16da411c2f709b2e · schema v1 · pii pii-v1
Full breach record for HYPERTHERM, INC. →2 incidents on fileThreat-actor claim — not a regulatory filing
This row is a claim by the ransomware group Cl0p on its public extortion blog. It has not been validated by the victim or any regulator. Treat attribution and counts as the threat actor's assertion until a regulatory filing or victim disclosure corroborates them.
Source: Ransomware.live
Post text · scraped from the leak site
Hypertherm is a global organization based in New Hampshire, USA. Founded in 1968, the company specializes in the design and manufacture of advanced cutting systems such as plasma, laser, and waterjet cutting solutions. Hypertherm products are employed in sectors like construction, shipbuilding, and manufacturing. They provide software, controls, and consumables for cutting applications. The company is also known for its employee ownership model.
J jump to incidentP pin to compareR raw source
Incident timeline — mostly unverified
? — ?
Breach window unknown
Nov 21, 2025
Claim posted
—
Corroborated · see linked filings
Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.
Claim → filing
—
Compliance clock
Not assessable
Linked disclosures
Why this link?Regulatory filings (4) · sorted by filing gap
- Massachusetts State AGbd_54bb8f1d73c9b17d2026-03-13 · +111dVerified by operator
- Indiana State AGbd_596f4d56396a82742026-03-13 · +111dVerified by operator
- Maine State AGbd_8e18d57ba22274372026-03-13 · +111dVerified
- Vermont State AGbd_e8719f6dfc09ffbd2026-03-13 · +111dVerified
Filing propagation · 5 filings · 4 states
View merged incident ↗Pattern: first filing Nov 21, last Mar 13 (VT) — a 111-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.
Source ceiling
- actor name
- victim claim
- ransom/leak status
- discovery date
- materiality
- notification
- affected count
- confirmed data types
- compliance clock
The ✕ fields stay blank until a regulatory filing or victim disclosure lands.