FEDERALItem 1.05 · mandatoryHackingAgriculture & FoodSoft DrinksCapture Stored DataData ExfiltratedCustomer Data InvolvedPIILowContained
Crimson Wine Group, Ltd.
bd_9737d8201342285b · schema v1 · pii pii-v1
Full breach record for Crimson Wine Group, Ltd. →Crimson Wine Group disclosed on July 25, 2024 that a June 30, 2024 cybersecurity incident involving unauthorized third-party access to internal systems and exfiltration of files (potentially including sensitive personal information) has likely had a material impact on business operations. The company shut down systems to contain the incident, engaged external cybersecurity experts, and has substantially restored affected systems. Scope of personal information exposure is still under investigation.
SEC clockMateriality determined Jul 25, 2024 → Filed Jul 25, 20240d ✓ SEC 4-day OK25 days discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
This filing is one of 8 about the same incident.View merged incident
Linked disclosures
Why this link?Ransomware claims (2)
- bd_26abea618405c74cLeak Siteabyssfiled 2024-07-25Verified by operator
- bd_5f666f0a00d5b193Leak Siteabyssfiled 2024-06-30(25d gap)Verified by operator
Regulatory filings (5) · sorted by filing gap
- bd_e827f1c9b467ab99SEC 8-Kfiled 2024-07-05(20d gap)Verified by operator
- bd_356c71d91c344925Washington State AGfiled 2024-12-13(141d gap)Verified by operator
- bd_97d469a8862c1d2eMontana State AGfiled 2024-12-13(141d gap)Verified
- bd_d15098c1f023a7c9Maine State AGfiled 2024-12-13(141d gap)Verified
Show 1 more filing ↓Show fewer ↑up to 141d gap
- bd_df3b95abdfdf2172Oregon State AGfiled 2024-12-13(141d gap)Verified
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1562151/000156215124000032/cwgl-20240725.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jul 25, 2024
- Raw hash
- afe9ce914fae8be76b560d5c97df3172ef798921f1b7ec5c80ff67452a7578da
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Crimson Wine Group, Ltd.norm: crimson wine
- SEC CIK
- 0001562151
- Domain
- crimsonwinegroup.com
Victim entity
- Name
- Crimson Wine Group, Ltd.norm: crimson wine
- SEC CIK
- 0001562151
- Domain
- crimsonwinegroup.com
- Industry
- Agriculture & FoodllmNAICS 312111 · Soft Drink Manufacturing
Incident
- Discovered
- Jun 30, 2024
- Materiality determined
- Jul 25, 2024
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- PII
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1041 Exfiltration Over C2 Channel
- Threat actor
- External
- Regulator citations
- Intends to provide required notifications to applicable regulatory agencies
Compliance
- Time to disclose
- 25 days(25 days from discovery to filing)
- Compliance flags
- SEC 4-day OK · 0d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Jul 25, 2024→ Filed: Jul 25, 20240d cal. 4 business days SEC 4-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.