FEDERALHackingLowContained
Aurora acquisition
bd_e6e7c98662de1b4a · schema v1 · pii pii-v1
Full breach record for Aurora acquisition →SEC 10-K Item 1C disclosure regarding a cybersecurity attack on computer systems related to the 'Aurora acquisition' detected on January 31, 2022. The systems were not yet integrated into the main company infrastructure. The company isolated the systems, engaged a forensic firm, and determined no critical data was accessed. The incident was contained and the systems were integrated in 2024.
Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1695295/000169529526000010/hyfm-20251231.htm
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Mar 27, 2026
- Raw hash
- 3bfc721ab0423bbe7a984ca0017986a288434e1c2d5e82e5142e03ad890b6ece
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- HYDROFARM HOLDINGS GROUP, INC.norm: hydrofarm holdings
- SEC CIK
- 1695295
Victim entity
- Name
- Aurora acquisitionnorm: aurora acquisition
Incident
- Discovered
- Jan 31, 2022
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- Not disclosed
- Data types
- —
- Attack vector
- Unknown
- Threat actor
- External
Compliance
- Time to disclose
- 51 months(1516 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.