DisclosureLens
FEDERALItem 1.05 · mandatoryMalwareRetail & ConsumerRetailHome CentersRansomwareStolen CredentialsData ExfiltratedData EncryptedRansom DemandedTargetedFinancialIP / systemPIILowContained

Jewett-Cameron Trading Company Ltd.

bd_455d40431dda69e5 · schema v1 · pii pii-v1

Severity

Low

Discovered

Oct 15, 2025

Filed

Oct 21, 2025

To disclose

6 days

Affected

Not disclosed

Confidence

66%
Full breach record for Jewett-Cameron Trading Company Ltd.

Jewett-Cameron Trading Company Ltd. disclosed a material cybersecurity incident on Oct 15, 2025, involving unauthorized access and ransomware deployment. Threat actors exfiltrated data, including images of video meetings and financial information prepared for SEC filings, and demanded payment. The company contained the intrusion, took systems offline, and engaged forensic experts. No PII compromise confirmed yet.

Incident timeline

discovery → filing · 6 days

Oct 15, 2025

Discovered

Oct 21, 2025

Filed

vs. sector median

7 wks faster

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statementThis record

Unlocks: materiality, stated response, full audit trail. Ceiling removed.