UFP Technologies reveals cyberattack impacting billing systems and exposing data

UFP Technologies recently reported that they experienced a severe cyberattack that took place on or around February 14, 2026. The attack involved unauthorized access to their IT systems, resulting in disruptions to key business functions such as billing and delivery label generation. The incident also led to the exfiltration or destruction of company data. While the company assured that their contingency plans and backups helped maintain core operations and stated that the intruder has been removed, investigations are ongoing to determine the extent of the compromised information and whether any personal or sensitive data was accessed.

The company believes that insurance will cover a significant portion of the investigation and remediation costs and does not foresee a significant impact on its financial status. The incident showed similarities to ransomware or wiper malware activities, although no specific threat group has claimed responsibility. Investigators are working to determine if personal information was among the data that was compromised.

In a Form 8-K filing with the Securities and Exchange Commission, Ronald J. Lataille, the company’s chief financial officer and senior vice president, acknowledged the suspicious activity detected in their IT systems on February 14, 2026. Measures were immediately taken to address and resolve the unauthorized activity, including isolating the affected systems and initiating an investigation with the help of external cybersecurity advisors.

UFP Technologies’ prompt actions successfully removed the third party responsible for the cybersecurity incident from its IT systems and restored access to the impacted information. The attack primarily affected various IT systems and functions such as billing and label creation for customer deliveries, resulting in the loss or theft of certain company-related data. However, the company’s contingency plans and data backup systems allowed for the implementation of solutions to address the issues effectively, ensuring that their operations continued without significant disruptions.

While confirming that some files were illicitly copied, UFP Technologies continues to assess the level of sensitive information compromised in the breached systems, specifically focusing on potential exposure of personal data. They are also evaluating the necessity of any legal or regulatory notifications and filings as a consequence of the incident. Investigations into the unauthorized access’s nature and scope are ongoing.

Based on their initial assessment, UFP Technologies predicts that a significant portion of the costs related to containing, investigating, and remediating the cybersecurity incident will be reimbursed through insurance recoveries. The company remains optimistic about the operational condition of its primary IT systems and does not anticipate a material impact on its financial standing or operational results due to the incident.

According to the recent Cyberthreats Report H2 2025 from Acronis, ransomware attacks exhibit disparities across countries, with healthcare sectors frequently targeted. Healthcare victims accounted for 12% of all disclosed ransomware cases in 2025. The report indicates that factors such as attacker focus, regional exposure, and defensive maturity drive ransomware attack volumes rather than market size alone.

The incident experienced by UFP Technologies underscores the ongoing challenges in cybersecurity, emphasizing the importance of robust protective measures and rapid response strategies to safeguard against potential breaches and mitigate their consequences effectively.