MalwareRansomwareData EncryptedRansom DemandedEmployee Data InvolvedIDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICPHIPIIMediumContained
CARPENTER CO.
bd_4e3bd9c637312328 · schema v1 · pii pii-v1
Full breach record for CARPENTER CO. →Carpenter Co experienced a ransomware incident on March 18, 2021, impacting IT systems. The company did not pay the ransom. Forensic investigation confirmed on May 24, 2021, that threat actors accessed personal information of employees and contractors, including SSNs, DOBs, financial account details, and health information. The company contained the malware, locked out unauthorized users, and engaged forensic experts. Remediation included network monitoring and active directory hardening. Identity monitoring was provided via Kroll.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_c6353158144d1d18Maine State AGfiled 2021-09-11Verified by operator
- bd_446b8e72df69c9b3Montana State AGfiled 2021-07-27(46d gap)Candidate
Source provenance
- Source URL
- https://oag.ca.gov/ecrime/databreach/reports/sb24-545204
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 11, 2021
- Raw hash
- ff98e97f62bd76c6a8572307b3ffb0fc9f1b77e62bbe8f41909c5274948c4388
Reporting entity
- Name
- CARPENTER CO.norm: carpenter
Victim entity
- Name
- CARPENTER CO.norm: carpenter
Incident
- Discovered
- Mar 18, 2021
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_GOVERNMENTIDENTITY_BASICFINANCIAL_ACCOUNTFINANCIAL_CREDENTIALSHEALTH_BASICPHIPII
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified law enforcement
Compliance
- Time to disclose
- 25 weeks(177 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.