DisclosureLens
FEDERALItem 1.05 · mandatoryUnauthorized AccessManufacturingManufacturingIron & SteelLowActive

NUCOR CORPORATION

bd_e268d2c41e8bb27d · schema v1 · pii pii-v1

Severity

Low

Discovered

Filed

May 14, 2025

To disclose

Affected

Not disclosed

Confidence

77%
Full breach record for NUCOR CORPORATION4 incidents on file

Nucor Corporation, a Delaware-incorporated steel manufacturer, disclosed under SEC Item 1.05 a cybersecurity incident involving unauthorized third-party access to certain IT systems. Upon detection, Nucor activated its incident response plan, took potentially affected systems offline, halted certain production operations at various locations, engaged external cybersecurity experts, and notified federal law enforcement. The investigation is ongoing; operations are being restarted. Scope, threat actor, data impact, and individuals affected were not disclosed.

SEC clockMateriality determined May 13, 2025Filed May 14, 20251d SEC 4-day OK
no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.

Incident timeline — partial

? — ?

Breach window unknown

May 14, 2025

Filed

No filing yet · watching

Compliance clocks stay unassessable until a regulatory filing lands. Dashed segments fill in automatically when corroboration arrives.

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filing

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statementThis record

Unlocks: materiality, stated response, full audit trail. Ceiling removed.