FEDERALUnknownTransportation & LogisticsTransportationLow
CANADIAN PACIFIC KANSAS CITY LTD/CN
bd_cdffbb9c6ac64b61 · schema v1 · pii pii-v1
Full breach record for CANADIAN PACIFIC KANSAS CITY LTD/CN →CPKC's Item 1C disclosure describes its cybersecurity risk management program (NIST CSF-based, TSA-aligned, third-party penetration testing, vulnerability management) and governance (CIO/CISO reporting to Audit and Finance Committee). The filing states that to date risks arising from cybersecurity threats have not materially affected the Company, its operations, or financial condition. No specific cybersecurity incident is disclosed.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/16875/000001687526000008/cp-20251231.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Feb 26, 2026
- Raw hash
- 4ef5395c90cbf9b6f326f5343ddfd9142613aaf5be6d6be321f1a681de05ce54
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- CANADIAN PACIFIC KANSAS CITY LTD/CNnorm: canadian pacific kansas city ltd cn
- Domain
- cpkcr.com
Victim entity
- Name
- CANADIAN PACIFIC KANSAS CITY LTD/CNnorm: canadian pacific kansas city ltd cn
- SEC CIK
- 16875
- Domain
- cpkcr.com
- Industry
- Transportation & Logisticsllm
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.