FEDERALItem 8.01 · voluntaryMalwareRansomwareData ExfiltratedEmployee Data InvolvedDelayed DiscoveryPIIEMPLOYMENTLowActive
PGT Innovations, Inc.
bd_f2e2d638ada8335a · schema v1 · pii pii-v1
Full breach record for PGT Innovations, Inc. →PGT Innovations, Inc. filed an 8-K on April 6, 2023, disclosing a ransomware infection detected on November 5, 2022. The incident impacted network operations and resulted in the unauthorized access of current and former employee personal information. The Company engaged forensic experts, notified affected individuals and regulators starting April 3, 2023, and maintains cyber insurance.
Leak gap clock⏱ Leak >90d22 weeks discovery → filing
⚠ occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
This filing is one of 4 about the same incident.View merged incident
A leak claim by blacksuit about this victim predates this filing by 111 days.View originating leak claim
Linked disclosures
Why this link?Ransomware claims (1)
- bd_c46d0405bf3ad1ceLeak Siteblacksuitfiled 2022-12-16(111d gap)Verified by operator
Regulatory filings (2) · sorted by filing gap
- bd_16bd95df5aef0536Maine State AGfiled 2023-04-03(3d gap)Verified by operator
- bd_c27185b56d90bee8California State AGfiled 2023-04-03(3d gap)Verified by operator
Source provenance
- Source URL
- https://www.sec.gov/Archives/edgar/data/1354327/000095010323005484/
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- Apr 6, 2023
- Raw hash
- 143c5da3961bc59338ed13b6686e66af20e7ecf4f7f300b468bd43d93d83e9c4
Source filing
AI-assisted summary above. The structured extract on this page was generated from the document below. Inspect the source to verify or correct any field.
Reporting entity
- Name
- PGT Innovations, Inc.norm: pgt innovations
- SEC CIK
- 0001354327
Victim entity
- Name
- PGT Innovations, Inc.norm: pgt innovations
- SEC CIK
- 0001354327
Incident
- Discovered
- Nov 5, 2022
- Materiality determined
- Apr 3, 2023
- Notification sent
- Apr 3, 2023
- Affected individuals
- Not disclosed
- Data types
- PIIEMPLOYMENT
- Attack vector
- Ransomware
- MITRE ATT&CK
- T1486 Data Encrypted for Impact
- Threat actor
- ExternalFinancial
- Regulator citations
- notifying... regulatory agencies as required by applicable federal and state law
Compliance
- Time to disclose
- 22 weeks(152 days from discovery to filing)
- Compliance flags
- Leak >90dSEC 4-day OK · 3d
- Discovery-date grounding
- occurrence dateThe stored discovery date equals the breach OCCURRENCE date. Detection is normally later, so this OVERSTATES the delay — a 'late' verdict here may not be real.
- Clock breakdown
Statute Window Elapsed Threshold Status SEC Materiality determined: Apr 3, 2023→ Filed: Apr 6, 20233d cal. 4 business days SEC 4-day OK
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.