Skip to content
cisonews.net

Incident · 8-K Item 1.05

Lee Enterprises reports a network attack that encrypted applications and delayed print distribution

Compiled 2026-09-27 from public records. By the cisonews.net Desk.

Lee Enterprises, which publishes local newspapers across the United States, disclosed on February 18, 2025 that a cybersecurity attack on February 3 had caused a systems outage. Threat actors encrypted critical applications and took files, and distribution of print products was delayed.

Original report

Lee said billing, collections and vendor payments were affected and that weekly and ancillary products, about five percent of operating revenue, had not been restored by February 12. It judged the incident reasonably likely to be material to its finances.

March 6, 2025 amendment

The 8-K/A reported the threat contained and all products being produced, with some back-office delays. It also disclosed a financing step taken because of the incident. Under the waiver, Lee's sole lender agreed to defer March 2025 interest and certain lease payments, adding them to principal. The company expected insurance to cover costs above a small retainer.

Still pending

At the amendment, Lee had not determined whether personally identifiable information was taken and expected an answer within weeks.

Sources

  1. 2025-02-18 · ALee Enterprises, Inc., Form 8-K (SEC EDGAR), published February 18, 2025
  2. 2025-03-06 · ALee Enterprises, Inc., Form 8-K/A (SEC EDGAR), published March 6, 2025

Tier A: the organization itself, a regulator or SEC EDGAR. Tier B: established press. Each fact on this page carries its supporting passage in the page source.

See an error? Corrections are made on the page and logged on the corrections page. Send them through contact.