Item 1.05 Material Cybersecurity Incidents
On April 6, 2025, Sensata Technologies Holding plc (the “Company”) experienced a ransomware incident that has encrypted certain devices in the Company’s network¹,². Upon discovery, Sensata immediately activated its response protocols, implemented containment measures, including proactively taking its network offline, and launched an investigation with the assistance of third-party cybersecurity professionals.³ In coordination with legal counsel, the Company has notified law enforcement about the matter and is supporting its investigation.
The incident has temporarily impacted Sensata’s operations, including shipping, receiving, manufacturing production, and various other support functions.⁴ While the Company has implemented interim measures to allow for the restoration of certain functions, the timeline for a full restoration is not yet known.⁵ The preliminary investigation has identified evidence that files were taken from the Company’s environment.⁶,⁷ The Company is working to identify and review the files involved and will take additional actions as appropriate based on its review, including notifying individuals and regulatory authorities in accordance with applicable law.
As of the date of this Form 8-K, Sensata does not expect this incident to have a material impact on the Company’s financial results and operations for the three months ended June 30, 2025; however, the full scope and impact of this incident is not yet known and could result in a future determination that the incident will be material to the Company's financial statements and results of operations.⁸,⁹,¹⁰ For the three months ended March 31, 2025, the Company expects revenue, adjusted operating income, adjusted net income, and adjusted earnings per share to be within or to slightly exceed the guidance ranges previously provided in its press release dated February 11, 2025.
Safe Harbor Statement
Statements in this Current Report on Form 8-K that are not historical facts, such as those identified by the use of words “anticipate,” “believe,” “could,” “estimate,” “expect,” “feel,” “forecast,” “intend,” “may,” “plan,” “potential,” “project,” “should,” “would,” and similar expressions, are forward-looking statements under the provisions of the Private Securities Litigation Reform Act of 1995. Forward-looking statements address the Company’s expectations or beliefs concerning future events, including the Company’s investigation of and containment efforts related to the cybersecurity incident and its impact on the Company’s financial condition and results of operations. These statements are made based on management’s views and assumptions as of the date of this report. Forward-looking statements by their nature address matters that are uncertain, and you are urged to view them with caution. A wide range of factors could materially affect future developments and performance, including but not limited to uncertainties related to the Company’s ongoing investigation of the cybersecurity incident and the possibility that the Company’s containment and remediation efforts may be unsuccessful. Detailed information about these and other risks is included in the Company’s Annual Report on Form 10-K for the year ended December 31, 2024, and its other reports filed with the Securities and Exchange Commission. Except as required by applicable law, we do not undertake any obligation to publicly update or revise any of these forward-looking statements, whether as a result of new information, future events, or otherwise.