Johnson Controls, a publicly traded building products and technology company, experienced a cybersecurity incident in February 2023. Regulatory filings in California, Texas, and Vermont confirmed the breach.
The incident exposed personal information belonging to employees, contract workers, and job applicants. While the exact company-wide number of affected individuals has not been officially disclosed, filings for Texas alone indicate at least 38,037 individuals were impacted. The full extent of data types exposed remains unclear due to the absence of a complete official company notification letter.
Additional details about the breach, including a comprehensive list of affected individuals and data types, may emerge as investigations proceed and further notices are issued.