Skip to main content
Johnson Controls10-Q: Cybersecurity incident

JCI confirms September 2023 cybersecurity incident exposed employee and applicant data.

What happened

The breach impacted sensitive personal and employee data, creating immediate regulatory, legal, and reputational risks.

Source

SEC EDGARJul 29, 2026

Quarterly report (Form 10-Q)

Johnson Controls 10-Q

Filing excerpt

During September 2023, we experienced a cybersecurity event where certain data, primarily employee, job applicant and personal information and other related data, was impacted.

sec.gov/Archives/edgar/data/833444/000083344426000087/jci-20260630.htmRead the full source

Other signals in this filing (9)

Extracted by Autobound

From the Signal API record
Signal
10-Q: Cybersecurity incident

What this signalsFilings often name leadership changes, deals and spending plans.

Fiscal year end
06/30
Filed
Jul 29, 2026

More 10-Q signals at other companies

The full record

From the Signal API record

Details

CIK
833444
Accession number
0000833444-26-000087
Filing year
2026
Fiscal year
0
Why it matters
Urgent security needs
Signal category
Technology

Extraction

Confidence
High
Relevance
90%
Sentiment
Negative
Detected
Aug 4, 2026
signal_type
sec-10q
signal_subtype
cybersecurityIncident

Use this data

Get every 10-Q signal for Johnson Controls and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at Johnson Controls this week?”

  2. Send it to your own tools

    The Signal API returns 10-Q signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full sec-10q record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/540e9cb4-1fbb-4193-a1d6-b3fdc122c4ae returns this record as JSON. POST /v1/companies/enrich returns every signal for johnsoncontrols.com.

{
  "signal_id": "540e9cb4-1fbb-4193-a1d6-b3fdc122c4ae",
  "signal_type": "sec-10q",
  "signal_subtype": "cybersecurityIncident",
  "detected_at": "2026-08-04T07:06:05.171+00:00",
  "company": {
    "name": "Johnson Controls",
    "domain": "johnsoncontrols.com"
  },
  "data": {
    "detail": "The breach impacted sensitive personal and employee data, creating immediate regulatory, legal, and reputational risks. This event highlights critical vulnerabilities in their data protection strategy, creating an urgent need for security remediation and enhanced threat detection solutions.",
    "summary": "JCI confirms September 2023 cybersecurity incident exposed employee and applicant data.",
    "excerpts": "During September 2023, we experienced a cybersecurity event where certain data, primarily employee, job applicant and personal information and other related data, was impacted.",
    "relevance": 0.9,
    "sentiment": "negative",
    "confidence": "high",
    "source_url": "https://www.sec.gov/Archives/edgar/data/833444/000083344426000087/jci-20260630.htm",
    "filing_date": "2026-07-29",
    "filing_year": 2026,
    "fiscal_year": 0,
    "fiscal_year_end": "06/30",
    "sales_relevance": "Urgent security needs",
    "signal_category": "technology"
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.