Data I/O Issues Update on Cybersecurity Incident
Data I/O Corporation (NASDAQ: DAIO) has successfully contained and remediated a ransomware incident that was first identified on August 16, 2025. The attack originated from a vulnerability in a third-party firewall service provider and was not specifically targeted at the company.
The company reports that all systems have been restored globally with no impact on customer orders or revenue. The incident's remediation costs are expected to be approximately $180,000 in Q3 2025. However, Data I/O has achieved $300,000 in annual cost savings through ongoing optimization efforts. The company has emerged with improved corporate processes and strengthened IT security systems.
Data I/O Corporation (NASDAQ: DAIO) ha contenuto e risolto con successo un incidente di ransomware identificato per la prima volta il 16 agosto 2025. L'attacco è partito da una vulnerabilità in un fornitore terzo del servizio firewall e non era diretto specificamente contro l'azienda.
Secondo la società, tutti i sistemi sono stati ripristinati a livello globale senza effetti sugli ordini dei clienti o sui ricavi. I costi di bonifica dell'incidente dovrebbero attestarsi intorno a $180.000 nel terzo trimestre 2025. Data I/O segnala inoltre di aver realizzato $300.000 di risparmi annui grazie a interventi di ottimizzazione continui. L'azienda è uscita dall'evento con processi aziendali migliorati e sistemi IT rafforzati.
Data I/O Corporation (NASDAQ: DAIO) ha contenido y solucionado con éxito un incidente de ransomware detectado por primera vez el 16 de agosto de 2025. El ataque se originó en una vulnerabilidad de un proveedor externo del servicio de firewall y no estaba dirigido específicamente a la compañía.
La empresa informa que todos los sistemas se han restaurado a nivel mundial sin impacto en los pedidos de clientes ni en los ingresos. Se estima que los costes de remediación del incidente ascenderán a aproximadamente $180,000 en el tercer trimestre de 2025. Sin embargo, Data I/O ha conseguido $300,000 en ahorros anuales mediante esfuerzos continuos de optimización. La compañía ha salido reforzada con procesos corporativos mejorados y sistemas de seguridad informática más sólidos.
Data I/O Corporation (NASDAQ: DAIO)는 2025년 8월 16일 처음 확인된 랜섬웨어 사건을 성공적으로 차단하고 복구했습니다. 이번 공격은 제3자 방화벽 서비스 공급업체의 취약점을 통해 발생했으며 회사만을 목표로 한 것은 아니었습니다.
회사 측은 전 세계 모든 시스템이 복구되었으며 고객 주문이나 매출에는 영향이 없었다고 보고했습니다. 사건 복구 비용은 2025년 3분기에 약 $180,000로 예상됩니다. 한편 Data I/O는 지속적인 최적화 노력으로 연간 $300,000의 비용 절감을 달성했습니다. 회사는 이번 일을 계기로 기업 프로세스가 개선되고 IT 보안 체계가 강화되었습니다.
Data I/O Corporation (NASDAQ: DAIO) a contenu et résolu avec succès un incident de ransomware détecté pour la première fois le 16 août 2025. L'attaque provenait d'une vulnérabilité chez un prestataire tiers du service pare-feu et n'était pas spécifiquement dirigée contre la société.
La société indique que tous les systèmes ont été restaurés à l'échelle mondiale sans impact sur les commandes clients ni sur le chiffre d'affaires. Les coûts de remédiation de l'incident devraient s'élever à environ 180 000 $ au troisième trimestre 2025. En parallèle, Data I/O a réalisé 300 000 $ d'économies annuelles grâce à des efforts d'optimisation continus. L'entreprise en ressort avec des processus internes améliorés et des systèmes de sécurité informatique renforcés.
Data I/O Corporation (NASDAQ: DAIO) hat einen Ransomware-Vorfall, der am 16. August 2025 erstmals festgestellt wurde, erfolgreich eingedämmt und behoben. Der Angriff ging von einer Schwachstelle bei einem Drittanbieter des Firewall-Dienstes aus und richtete sich nicht gezielt gegen das Unternehmen.
Das Unternehmen meldet, dass weltweit alle Systeme wiederhergestellt wurden, ohne Auswirkungen auf Kundenbestellungen oder Umsatz. Die Kosten für die Bereinigung des Vorfalls werden voraussichtlich bei etwa $180.000 im dritten Quartal 2025 liegen. Gleichzeitig hat Data I/O durch fortlaufende Optimierung $300.000 jährliche Einsparungen erzielt. Das Unternehmen geht mit verbesserten Unternehmensabläufen und gestärkten IT-Sicherheitsmaßnahmen aus dem Vorfall hervor.
- No revenue loss or customer impact from the cybersecurity incident
- Systems fully restored with enhanced security measures
- $300,000 in annual cost savings achieved through optimization efforts
- Improved corporate processes and IT security infrastructure
- One-time expense of $180,000 in Q3 2025 for incident remediation
- Identified vulnerability in third-party firewall service provider
Insights
Data I/O contained a non-targeted ransomware attack with minimal financial impact while improving their security posture.
The cybersecurity incident at Data I/O represents a relatively minor event with positive long-term implications. The ransomware attack originated from a vulnerability in a third-party firewall service provider rather than being specifically targeted at the company—an important distinction that suggests opportunistic rather than strategic targeting. Most significantly, the company reports no customer impact and no lost orders, which is exceptional for ransomware incidents that typically disrupt operations.
The financial impact is relatively contained at
What's particularly encouraging is that Data I/O leveraged this incident as a catalyst to strengthen their security infrastructure and corporate processes. This proactive approach to turning a security incident into an improvement opportunity demonstrates mature security leadership. The rapid containment and remediation timeline (approximately three weeks from detection to full restoration) is faster than industry averages, indicating effective incident response capabilities.
The fact that all systems globally have been restored with no reported data exfiltration or compromise suggests the attack was likely contained before reaching critical systems. This outcome points to reasonable security segmentation and rapid detection capabilities that limited the attack's spread.
All Systems Operational with No Impact to Customers or Orders
Redmond, Washington--(Newsfile Corp. - September 4, 2025) - Data I/O Corporation (NASDAQ: DAIO), the leading global provider of advanced security and data deployment solutions for microcontrollers, security ICs and memory devices, today provided an update on the recently announced cybersecurity incident.
William Wentworth, the Company's President and CEO, stated, "We are pleased to report that the ransomware incident as first identified on August 16, 2025 has been completely contained and remediated. It was determined that the attack was not targeted but originated as a vulnerability of a commercially available third-party firewall service provider. With the breach being remediated, at present all our systems globally have been restored. We do not believe we have any risk exposure from the incident. After working diligently to restore the affected systems with leading cybersecurity experts, we believe our IT systems are now better protected than ever. Equally important is that our order flow from bookings to deliveries is on track and we believe no revenue has been lost as a result of the incident.
"The remediation, restoration and investigation efforts are expected to total approximately
About Data I/O Corporation
Since 1972, Data I/O has developed innovative solutions to enable the design and manufacture of electronic products for automotive, Internet-of-Things, medical, wireless, consumer electronics, industrial controls and other electronics devices. Today, our customers use Data I/O's data programming solutions and security deployment platform to secure the global electronics supply chain and protect IoT device intellectual property from point of inception to deployment in the field. OEMs of any size can program and securely provision devices from early samples all the way to high volume production prior to shipping semiconductor devices to a manufacturing line. Data I/O enables customers to reliably, securely, and cost-effectively bring innovative new products to life. These solutions are backed by a portfolio of patents and a global network of Data I/O support and service professionals, ensuring success for our customers. Learn more at dataio.com/Company/Patents.
Safe Harbor/Forward Looking Statement and Disclosure Information
Statements in this news release concerning the impact of the cybersecurity impact on the Company's business and financial results, economic outlook, expected revenue, expected margins, expected savings, expected results, expected expenses, orders, deliveries, backlog and financial positions, semiconductor chip shortages, supply chain expectations, as well as any other statement that may be construed as a prediction of future performance or events are forward-looking statements which involve known and unknown risks, uncertainties and other factors which may cause actual results to differ materially from those expressed or implied by such statements.
Forward-looking statement disclaimers also apply to the impact of the cybersecurity incident, demand for the Company's products and the impact from geopolitical conditions including any related international trade restrictions as well as the ongoing investigation of the August 2025 cybersecurity incident and the possibility that the Company's containment and remediation efforts may be unsuccessful or becomes a challenging force in maintaining market share. Factors that may impact the Company's operations and finances include uncertainties as to the ability to record revenues based upon the timing of product deliveries, shipping availability, installations and acceptance, accrual of expenses, coronavirus related business interruptions, changes in economic conditions, part shortages, business disruptions and other risks including those described in the Company's 10-K, 10-Q and other periodic filings with the Securities and Exchange Commission (SEC), press releases and other communications.
Data I/O may use its website (www.dataio.com) and investor relations page (www.dataio.com/Company/Investor-Relations), its X account (@DataIO_Company), and its LinkedIn page (linkedin.com/company/data-io) to disclose material non-public information and for complying with its disclosure obligations under Regulation FD. Accordingly, investors and other interested parties should monitor these sites, in addition to following Data I/O's press releases, Securities and Exchange Commission (SEC) filings, public conference calls and public presentations/webcasts.
Contact:
Darrow Associates, Inc.
Jordan Darrow
512-551-9296
jdarrow@darrowir.com
To view the source version of this press release, please visit https://www.newsfilecorp.com/release/265115