Historical disclosure revision 2
Disclosures and evidence
Revision 2 of 3 · Evidence cutoff Oct 4, 2023, 12:00 AM UTC
6 prior statements preserved · 9 statements added. Attributed source statements retain the source’s qualifications.
What the company disclosed
The Clorox Company stated: “The Clorox Company (the “Company” or “Clorox”) has identified unauthorized activity on some of its Information Technology (IT) systems. After becoming aware of the activity, the Company began taking steps to stop and remediate the activity, including taking certain systems offline. The Company is working diligently to respond to and address this issue, and is also coordinating with law enforcement. To the extent possible, and in line with its business continuity plans, Clorox has implemented workarounds for certain offline operations in order to continue servicing its customers. However, the incident has caused, and is expected to continue to cause, disruption to parts of the Company’s business operations.”
Operational impact
The Clorox Company stated: “The Clorox Company (the “Company” or “Clorox”) has identified unauthorized activity on some of its Information Technology (IT) systems. After becoming aware of the activity, the Company began taking steps to stop and remediate the activity, including taking certain systems offline. The Company is working diligently to respond to and address this issue, and is also coordinating with law enforcement. To the extent possible, and in line with its business continuity plans, Clorox has implemented workarounds for certain offline operations in order to continue servicing its customers. However, the incident has caused, and is expected to continue to cause, disruption to parts of the Company’s business operations.”
The Clorox Company stated: “Based on its current assessment of the situation, the Company expects to experience ongoing, but lessening, operational impacts in the second quarter as it makes progress in returning to normalized operations. The Company also expects to begin to benefit from the restocking of retailer inventories as it ramps up fulfillment in the second quarter.”
Financial impact, scope and period
The Clorox Company stated: “| | (1) | During the three months ended Sept. 30, 2023, the Company expects to incur approximately $25 ($19 after tax) of costs related to the cybersecurity attack. These costs relate to third-party consulting services, including forensic experts, legal counsel and other IT professional services, as well as incremental operating costs incurred from the resulting disruption to parts of the Company’s business operations.” Unit declaration: “(Dollars in millions except per share data)” Table context: “| | | Three Months Ended Sept. 30, 2023 (Preliminary estimated range) |” Table context: “| | | Diluted Earnings (Losses) Per Share |”
Response
The Clorox Company stated: “The Clorox Company (the “Company” or “Clorox”) has identified unauthorized activity on some of its Information Technology (IT) systems. After becoming aware of the activity, the Company began taking steps to stop and remediate the activity, including taking certain systems offline. The Company is working diligently to respond to and address this issue, and is also coordinating with law enforcement. To the extent possible, and in line with its business continuity plans, Clorox has implemented workarounds for certain offline operations in order to continue servicing its customers. However, the incident has caused, and is expected to continue to cause, disruption to parts of the Company’s business operations.”
The Clorox Company stated: “Clorox has engaged leading third-party cybersecurity experts to support its investigation and recovery efforts. The investigation to assess the nature and scope of the incident remains ongoing and is in its early stages.”
The Clorox Company stated: “Beginning in the first quarter of fiscal year 2024, incremental costs were incurred by the Company as a result of the identification of unauthorized activity on some of its Information Technology (IT) systems, as more thoroughly described in the Form 8-Ks that were furnished on Aug. 14 and Sept. 18, 2023. These costs were incurred to investigate and remediate the attack as well as incremental operating costs from the resulting disruption to parts of the Company’s business operations. These costs include third-party consulting services, including forensic experts, legal counsel and other IT professional services.”
Recovery updates
The Clorox Company stated: “As previously disclosed, the Company believes the cybersecurity attack has been contained and the Company is making progress in restoring its systems and operations. On Sept. 25, Clorox began the process of transitioning back to automated order processing and the vast majority of orders are now taking place in an automated manner, which is enabling the Company to ramp up output and shipments to rebuild retailer inventories. Clorox expects the process of restocking retailer inventories will occur over time as it ships above consumption levels.”
Disclosure timeline
The Clorox Company stated: “Date of Report (Date of earliest event reported): August 14, 2023”
The Clorox Company stated: “OAKLAND, Calif., Oct. 4, 2023 — The Clorox Company (NYSE: CLX) (the “Company” or “Clorox”) today announced certain preliminary financial information for the first quarter of fiscal 2024, which ended Sept. 30, 2023, as well as an operations update following the previously announced cybersecurity attack that impacted the Company’s business.”
Disclosure evolution
The Clorox Company stated: “OAKLAND, Calif., Oct. 4, 2023 — The Clorox Company (NYSE: CLX) (the “Company” or “Clorox”) today announced certain preliminary financial information for the first quarter of fiscal 2024, which ended Sept. 30, 2023, as well as an operations update following the previously announced cybersecurity attack that impacted the Company’s business.”
Qualifications and uncertainty
The Clorox Company stated: “Clorox has engaged leading third-party cybersecurity experts to support its investigation and recovery efforts. The investigation to assess the nature and scope of the incident remains ongoing and is in its early stages.”
The Clorox Company stated: “Clorox is in the process of assessing the impact of the cybersecurity attack on fiscal year 2024 and beyond. The Company will provide an updated outlook during its first quarter earnings call in November.”
The Clorox Company stated: “The unaudited financial and operational information presented in this press release is preliminary and may change. Clorox’s financial closing procedures with respect to the estimated financial information provided in this press release are not yet complete, and as a result, the Company’s final results may vary materially from the preliminary results included in this press release. Clorox undertakes no obligation to update or supplement the information provided in this press release until the Company releases its financial statements for the three months ended Sept. 30, 2023. The preliminary financial information included in this press release reflects the Company’s current estimates based on information available as of the date of this press release and has been prepared by Company management. This preliminary financial and operational information should not be viewed as a substitute for full financial statements prepared in accordance with GAAP and is not necessarily indicative of the results to be achieved for any future periods. This preliminary financial and operational information could be impacted by the effects of financial closing procedures, final adjustments, and other developments.”
The Clorox Company stated: “Cybersecurity attack costs are provided exclusive of any potential insurance recoveries. The timing of recognizing insurance recoveries may differ from the timing of recognizing the associated expenses. Costs associated with ongoing cybersecurity monitoring and prevention as well as enhancement to the Company’s cybersecurity program are not included within this adjustment. The Company expects to continue to incur costs associated with the cybersecurity attack in future periods.”
Disclosure sources and provenance
- U.S. Securities and Exchange Commission Filed August 14, 2023Report/event date: August 14, 2023Document form: 8-K · Item 8.01 and9.01SEC HTTPS source · Retrieved Oct 7, 2026, 2:16 PM UTC · Retained Oct 7, 2026, 2:16 PM UTC
- U.S. Securities and Exchange Commission Filed October 4, 2023Report/event date: October 4, 2023Statement/document date: October 4, 2023Document form: EX-99.1 to8-K · Item 2.02 and9.01 filing relationshipSEC HTTPS source · Retrieved Oct 7, 2026, 2:18 PM UTC · Retained Oct 7, 2026, 2:18 PM UTC
Evidence limitations
- Issuer disclosures establish what was reported, not independent incident verification.