Incident · 8-K Item 1.05
ENGlobal restricts IT access after a threat actor encrypts data files
Compiled 2026-09-27 from public records. By the cisonews.net Desk.
ENGlobal, a Houston engineering and automation services company, disclosed on December 2, 2024 that it had become aware of a cybersecurity incident on November 25 in which a threat actor encrypted some of its data files. It limited access to its IT system to essential operations while it responded.
First filing
The company said the actor encrypted files and that restoring full access had no set timeline.
January 2025 amendment
The 8-K/A gave the length of the disruption. ENGlobal said operations were fully restored and the actor no longer had access. The amendment also disclosed that the affected part of the system held sensitive personal information and that notifications would follow. The company concluded the incident was not material to its finances, except as described.
Not disclosed
ENGlobal did not say how many people's data was involved or what the recovery cost.
Sources
- 2024-12-02 · AENGlobal Corporation, Form 8-K (SEC EDGAR), published December 2, 2024
- 2025-01-27 · AENGlobal Corporation, Form 8-K/A (SEC EDGAR), published January 27, 2025
Tier A: the organization itself, a regulator or SEC EDGAR. Tier B: established press. Each fact on this page carries its supporting passage in the page source.
See an error? Corrections are made on the page and logged on the corrections page. Send them through contact.