FEDERALItem 1.05 · mandatoryHackingTechnologyInformationComputer HardwareMidnight Blizzard (Cozy Bear)Data ExfiltratedActor NamedNation State SuspectedTargetedEmployee Data InvolvedDelayed DiscoveryMulti-Stage ChainLowContained
HEWLETT PACKARD ENTERPRISE COMPANY
bd_cdd41d4da6447050 · schema v1 · pii pii-v1
Full breach record for HEWLETT PACKARD ENTERPRISE COMPANY →HPE disclosed an Item 1.05 material cybersecurity incident: on December 12, 2023, HPE was notified that suspected nation-state actor Midnight Blizzard (Cozy Bear) gained unauthorized access to its cloud-based email environment, exfiltrating data from a small percentage of mailboxes beginning May 2023. The incident is believed related to a separately-noticed June 2023 SharePoint exfiltration. HPE engaged external experts, contained and eradicated the activity, and notified law enforcement. No material impact determined as of filing.
SEC clockMateriality determined Jan 19, 2024 → Filed Jan 24, 20245d ✓ SEC 4-day OK6 weeks discovery → filing
⚠ unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1645590/000164559024000009/hpe-20240119.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Jan 24, 2024
- Raw hash
- 95d6bb40548991ac32b6de2f4eba9b0adf1e0bbe2526cff7ebf1708e6787eb45
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- HEWLETT PACKARD ENTERPRISE COMPANYnorm: hewlett packard enterprise
- SEC CIK
- 0001645590
- Domain
- hpe.com
Victim entity
- Name
- HEWLETT PACKARD ENTERPRISE COMPANYnorm: hewlett packard enterprise
- SEC CIK
- 0001645590
- Domain
- hpe.com
- Industry
- TechnologyllmNAICS 334118 · Computer Terminal and Other Computer Peripheral Equipment Manufacturing
Incident
- Discovered
- Dec 12, 2023
- Materiality determined
- Jan 19, 2024
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unauthorized Access· Midnight Blizzard (Cozy Bear)
- MITRE ATT&CK
- T1078.004 Cloud AccountsT1114 Email CollectionT1041 Exfiltration Over C2 Channel
- Threat actor
- Midnight Blizzard (Cozy Bear)ExternalEspionage
- Regulator citations
- Notified and cooperating with law enforcementAssessing regulatory notification obligations
Compliance
- Time to disclose
- 6 weeks(43 days from discovery to filing)
- Compliance flags
- SEC 4-day OK · 5d
- Discovery-date grounding
- unattributedNo provenance was recorded for this discovery date and it matches no other date on the record. It may be correct, but it is not independently grounded.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Jan 19, 2024→ Filed: Jan 24, 20245d cal. 4 business days SEC 4-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.