Breach taxonomy
Summary
On January 31, 2024, Willis Lease Finance Corporation detected unauthorized activity on portions of its IT systems. The company immediately took steps to contain the activity, including taking certain systems offline, and launched an investigation with third-party cybersecurity experts. The activity was fully contained by February 2, 2024. Operations continued with workarounds where necessary. The investigation into data exfiltration remained ongoing as of the filing date. Law enforcement was notified. Filed under Item 8.01; materiality not yet determined.
Tagging rationale
ThreatUnknown
Filing does not attribute the incident to a specific actor → UNKNOWN.
MethodsMalware
Unauthorized activity on IT systems requiring system shutdowns and workarounds is consistent with malware deployment → MALWARE.