Breach taxonomy
Summary
On March 11, 2026, a Singapore-based subsidiary of Trio-Tech International experienced a ransomware attack that encrypted files on the company's network. The incident escalated on March 18, 2026, when unauthorized disclosure of company data occurred, prompting management to conclude the event may constitute a material cybersecurity incident. The subsidiary activated response protocols, took its network offline, engaged third-party cybersecurity professionals, and notified Singapore law enforcement. The company is working with its cyber insurance provider; the full scope of affected data has not yet been determined.
Tagging rationale
ThreatUnknown
Filing does not attribute the incident to a specific actor → UNKNOWN.
MethodsRansomwareData Exfil
Filing confirms 'a ransomware incident that resulted in encryption of certain files' and that the 'incident escalated and resulted in the unauthorized disclosure of certain Company data' → RANSOMWARE + DATA-EXFIL.
AssetsPersonal DataConfidential Biz
Filing states 'unauthorized disclosure of certain Company data' and that the subsidiary is 'in the process of notifying affected parties as required by applicable law,' suggesting personal data and confidential business data were affected.
EffectsCyber ExtortionInfo Privacy Loss
Ransomware deployment indicates a likely ransom demand (CYBER-EXTORTION); unauthorized data disclosure creates information privacy exposure (INFO-PRIVACY-LOSS).
Business continuityPartial
Subsidiary 'immediately activated its response protocols' and proactively took its network offline; the filing states the company is 'taking steps to contain the incident, restore affected systems' with investigation ongoing → Partial.
Impact
Ransomware with data exfiltration limited to a single Singapore subsidiary of a small-cap company; operations not materially disrupted and financial impact expected to be minimal → score 2.
InsuranceYes
Filing states the subsidiary 'is also working closely with its cyber insurance provider to support the investigation, remediation, and potential claims process' → true.
Read the original SEC filing excerpt
Item 1.05 Material Cybersecurity Incidents On March 11, 2026, Trio-Tech International ("Company") identified and responded to a cybersecurity incident in one of its subsidiaries ("subsidiary") in Singapore. The subsidiary experienced a ransomware incident that resulted in encryption of certain files within the Company's network. At that time, management determined that the incident was not material. On March 18, 2026, the incident escalated and resulted in the unauthorized disclosure of certain Company data. Following this development, management concluded that the incident may constitute a material cybersecurity event. Upon discovery of the cybersecurity incident, the subsidiary immediately activated its response protocols, implemented containment measures, including proactively taking its network offline, launching an investigation with the assistance of third-party cybersecurity professionals and notifying law enforcement in Singapore. The subsidiary is taking steps to contain the incident, restore affected systems, and enhance monitoring across its network environment. The subsidiary is in the process of notifying affected parties as required by applicable law. The scope of the data potentially affected has not yet been fully determined, and the Company's investigation remains ongoing. The subsidiary is also working closely with its cyber insurance provider to support the investigation, remediation, and potential claims process. The full scope and impact of this incident is not yet known and could result in a future determination that the incident may be material to the Company's financial statements and results of operations. As of the date of this Form 8-K, the incident has not resulted in any material disruption to the subsidiary's operations or the Company's business, and the Company does not expect this incident to have a material impact on the Company's financial results and operations for the three months ended March 31, 2026.