DisclosureLens
HackingManufacturingManufacturingCustomer Data InvolvedPIIIdentity (basic)LowContained

Simpson Strong-Tie

bd_e9b36fbacf8cf751 · schema v1 · pii pii-v1

Severity

Low

Discovered

Oct 10, 2023

Filed

Mar 21, 2024

To disclose

23 weeks

Affected

Not disclosed

Linked

6 filings

Confidence

64%
Full breach record for Simpson Strong-Tie

Simpson Strong-Tie Co. Inc. notified the California Attorney General of a data breach where an unknown third party accessed its IT infrastructure from October 9-11, 2023. The company discovered the incident on October 10, 2023. Personal information, including identity data, was accessed. The company secured its environment, reset passwords, enhanced monitoring, and offered two years of credit monitoring to affected individuals.

California clockDiscovered Oct 10, 2023Notified Mar 19, 2024161d CA 60-day late23 weeks discovery → filing

Incident timeline

undetected · 1 days
discovery → filing · 23 weeks / 163 days

Oct 9, 2023

Begins

Oct 10, 2023

Discovered

Mar 21, 2024

Filed

This filing is one of 6 about the same incident.View merged incident
A leak claim by black_basta about this victim predates this filing by 163 days.View originating leak claim

Linked disclosures

Why this link?

Ransomware claims (2)

Regulatory filings (3) · sorted by filing gap

Filing propagation · 4 filings · 4 states

View merged incident ↗
Indiana State AGMar 19 · first
California State AG+2d · this page

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.