FEDERALUnknownLow
Box
bd_cfb01c70ae190a39 · schema v1 · pii pii-v1
Full breach record for Box →Box, Inc. (Box) filed its 2023 Form 10-K disclosing its cybersecurity risk management program. The filing describes governance, risk assessment, and incident response procedures aligned with NIST CSF. Box explicitly states it does not believe its business strategy, results of operations, or financial condition have been materially affected by cybersecurity threats, though it provides no assurance regarding future impacts. No specific incident, breach, or material impact is disclosed.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1372612/000119312526098466/box-20260131.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Mar 9, 2026
- Raw hash
- 33ea75e746145e55fde1c909826433ad9aa4d0b0cb40d22dbc846906f5d414d2
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- Boxnorm: box
- SEC CIK
- 0001561025
- Domain
- box.com
- Industry
- Software
Victim entity
- Name
- Boxnorm: box
- SEC CIK
- 0001561025
- Domain
- box.com
- Industry
- Software
Incident
- Discovered
- —
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
Compliance
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.