[
  {
    "id": "sec-0000731766-2024-02-21",
    "filer": "UnitedHealth Group Inc",
    "cik": "0000731766",
    "filing_date": "2024-02-21",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/731766/000073176624000045/unh-20240221.htm",
    "item_text": "On February 21, 2024, UnitedHealth Group determined that a cybercrime threat actor had gained access to certain Change Healthcare information technology systems. Immediately upon determination, the Company isolated the impacted systems and initiated containment efforts. The Company has retained leading third-party forensic firms and is working closely with law enforcement authorities."
  },
  {
    "id": "sec-0000789019-2024-01-25",
    "filer": "Microsoft Corporation",
    "cik": "0000789019",
    "filing_date": "2024-01-25",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/789019/000119312524014902/d690558d8k.htm",
    "item_text": "On January 12, 2024, Microsoft detected that a Russian state-sponsored actor (Midnight Blizzard / Nobelium) used a password spray attack to compromise a legacy non-production test tenant account and gain access to a very small percentage of employee email accounts, including members of senior leadership and cybersecurity teams."
  },
  {
    "id": "sec-0001645590-2024-01-24",
    "filer": "Hewlett Packard Enterprise Company",
    "cik": "0001645590",
    "filing_date": "2024-01-24",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/1645590/000164559024000008/hpe-20240124.htm",
    "item_text": "On January 19, 2024, HPE was notified that a state-sponsored threat actor gained unauthorized access to its cloud-based email environment beginning in May 2023, exfiltrating data from a small percentage of HPE mailboxes belonging to individuals in cybersecurity and legal functions."
  },
  {
    "id": "sec-0001137774-2024-02-05",
    "filer": "Prudential Financial Inc",
    "cik": "0001137774",
    "filing_date": "2024-02-05",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/1137774/000113777424000012/pru-20240205.htm",
    "item_text": "On February 5, 2024, Prudential Financial identified that a cybercrime threat actor had accessed certain company systems on February 4, 2024, exfiltrating administrative and user data before containment procedures successfully halted the unauthorized activity."
  },
  {
    "id": "sec-0000021076-2023-12-22",
    "filer": "The Clorox Company",
    "cik": "0000021076",
    "filing_date": "2023-12-22",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/21076/000002107623000072/clx-20231222.htm",
    "item_text": "On December 22, 2023, Clorox filed an updated Item 1.05 Form 8-K disclosing widespread operational disruption resulting from unauthorized activity on IT systems, causing shipment delays and estimated net sales reductions of $350 million."
  },
  {
    "id": "sec-0001489096-2023-12-21",
    "filer": "First American Financial Corp",
    "cik": "0001489096",
    "filing_date": "2023-12-21",
    "url": "https://www.sec.gov/ix?doc=/Archives/edgar/data/1489096/000148909623000062/faf-20231221.htm",
    "item_text": "On December 21, 2023, First American Financial Corporation experienced cybersecurity unauthorized access, necessitating the temporary shutdown of title insurance and closing settlement platforms nationwide."
  }
]