Sustainability Division of Schneider Electric reported a data breach to the Indiana Attorney General. The breach occurred on 2023-12-27 and was reported on 2025-10-31. 3 Indiana residents were affected. 205 individuals affected in total.
Clustered 3 filings across 3 jurisdictions · filed Oct 31, 2025. View entity profile → Other incidents for this victim →
incident inc_71ac65910c574ee7 · merge_method deterministic · confidence 100%
Discovered → first regulatory filing
Range of discovered_at dates across filings
Time between earliest and latest filing
Not recorded for this incident
Leak precedence · Materiality delta · SEC filing delay — no leak-site claim in this cluster; no SEC 8-K in this cluster.
PII · Identity (basic)
IN NH VT
all State AG
Earliest sighting first · deep chronology in Litigation Timeline
Dec 27, 2023
When the intrusion reportedly occurred, per the linked filings
Jan 17, 2024
Reported by NEW HAMPSHIRE AG, VERMONT AG filings
Sustainability Division of Schneider Electric reported a data breach to the Indiana Attorney General. The breach occurred on 2023-12-27 and was reported on 2025-10-31. 3 Indiana residents were affected. 205 individuals affected in total.
About this clustering
DisclosureLens links filings into incidents through layered matchers: deterministic rules (same source document, multistate filings of one breach, tight-window same-victim pairs), a weighted-similarity scorer for cross-source candidates, and an operator review queue for everything uncertain. Each link records its own method and confidence — shown per filing in the timeline below. The system defaults to NOT merging when uncertain, because a false merge (collapsing two unrelated breaches) is more harmful than a false split (showing related filings separately); uncertain pairs route to human review instead of auto-merging. Filing summaries shown in the timeline are AI-generated extracts — verify each against its linked source.
Affected (this filing): 205
Schneider Electric's Sustainability Business division suffered a ransomware attack by actor 'Cactus' exploiting CVE-2023-48365 on a Qlik Sense server. Access occurred Dec 27, 2023–Jan 17, 2024. One NH resident's name and passport number were exposed. Incident contained Jan 31, 2024; data posted to dark web Feb 19, 2024. Notification sent Oct 31, 2025.
Affected (this filing): 1
Sustainability Business division of Schneider Electric notified Vermont AG of a ransomware incident detected Jan 17, 2024. Unauthorized access occurred Dec 27, 2023 – Jan 17, 2024, resulting in exfiltration of unstructured datasets containing PII (names). Incident contained Jan 31, 2024. Affected individuals offered 24-month credit monitoring via TransUnion/Cyberscout.