Free tools Windows power users keep installed
One-click scans. No signup required.
IMI plc disclosed on February 6, 2025 that attackers had gained unauthorised access to company systems. Its first announcement confirmed an investigation and containment effort but did not identify the attackers, explain how they got in, name affected systems or say whether data was stolen. Later filings confirmed temporary operational disruption, regulatory and law-enforcement engagement, and £27.1 million in 2025 response-related costs. They still do not establish whether information was exfiltrated or who was responsible.
What IMI announced on February 6, 2025
IMI, a UK-based engineering group, described the event as a “cyber security incident” involving “unauthorised access” to its systems. The company said it had brought in external cybersecurity specialists to investigate and contain the incident, was addressing its regulatory obligations, and would provide further information “as and when appropriate.” The announcement was published by IMI and through the London Stock Exchange.
The wording was deliberately limited. A contemporaneous report by BleepingComputer noted that IMI declined to provide additional public detail at the time. That initial lack of information should not be read as proof that the event was minor or that no information was affected.
Sources: IMI announcement and London Stock Exchange notice.
Do these 3 things before closing this tab:
1Repair Windows errors before they cause bigger problems2Fix the driver behind crashes, sound loss and screen glitches3Clear out junk files and repair common Windows errors#1 Best Overall
- POWERFUL SECURITY KEY: The Security Key C NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key C NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key C NFC via USB-C and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
Why the incident mattered to an industrial group
IMI develops fluid- and motion-control technologies for markets including energy, automation, healthcare, climate control, transport and life sciences. It has more than 10,000 employees and customers across international industrial sectors, according to its company overview. An intrusion at a group with that footprint can affect ordinary corporate IT as well as manufacturing planning, engineering information, logistics and customer support. The public disclosures do not identify which of those environments were involved.
What later filings established
IMI’s interim and annual reporting added business consequences that were absent from the February statement. The company subsequently referred to the event as a cyber-attack and described the following response:
Rank #2
- POWERFUL SECURITY KEY: The YubiKey 5C NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5C NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5C NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
- Systems were taken offline to contain and eliminate the problem.
- Certain operations were temporarily affected.
- External specialists investigated, contained and remediated the attack.
- IMI notified the UK Information Commissioner’s Office (ICO) and engaged law enforcement.
- The board met regularly to oversee the response.
- Customer and employee communications were issued during the incident.
- The company reviewed and enhanced its cybersecurity framework afterward.
These statements confirm disruption and a substantial response, but they do not show that production across the entire group stopped. The filings do not name affected plants, applications, subsidiaries, production lines or customer-facing services.
Sources: IMI 2025 annual report and 2025 interim results.
Rank #3
- POWERFUL SECURITY KEY: The YubiKey 5 NFC is the most versatile physical passkey, protecting your digital life from phishing attacks. It ensures only you can access your accounts
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 NFC secures 100+ of your favorite accounts, including email, password managers, and more
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 NFC via USB and tap it, or tap it against your phone (NFC), to authenticate. No batteries, no internet connection, and no extra fees required
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it
- PRIMARY & SPARE KEYS: Just like having a spare house key, we recommend buying two YubiKeys - one for daily use and one as a spare. That way you’ll never get locked out of your accounts
The reported financial cost
| Reporting point | Amount | What IMI said it covered |
|---|---|---|
| First half of 2025 | £25 million | Incident-related adjusting items |
| Year ended December 31, 2025 | £27.1 million | Primarily IT recovery, risk management, upgraded IT infrastructure and advisory work |
The £27.1 million figure is reported response and remediation expenditure, not a statement that IMI lost £27.1 million in sales or profit. It may not capture every economic effect, such as delayed output, lost opportunities, customer remediation, litigation, insurance recoveries or longer-term reputational harm. IMI’s five-year financial summary and annual report provide the full-year figure; the interim-results release provides the first-half amount.
What remains undisclosed
As of August 18, 2026, the public company materials reviewed do not answer several questions that matter to security teams, investors and affected business partners:
Rank #4
- POWERFUL SECURITY KEY: The Security Key NFC is the essential physical passkey for protecting your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with Google, Microsoft, and Apple. A single Security Key NFC secures 100 of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your Security Key NFC via USB-A and tap it, or tap it against your phone (NFC) to authenticate. No batteries, no internet connection, and no extra fees required.
- TRUSTED PASSKEY TECHNOLOGY: Uses the latest passkey standards (FIDO2/WebAuthn & FIDO U2F) but does not support One-Time Passwords. For complex needs, check out the YubiKey 5 Series.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
- Initial access: IMI has not identified the vulnerability, stolen credential, phishing route or other entry method.
- Attack type: The company has not said that ransomware, extortion or any other specific technique was used.
- Attribution: No threat actor, criminal group or state-linked organization has been publicly named.
- Scope: The affected systems, sites, subsidiaries and duration of unauthorized access have not been specified.
- Data exfiltration: IMI has not publicly confirmed whether company, employee or customer information was copied or removed.
- Financial demands: No ransom demand, payment or negotiation has been disclosed.
- Forensic conclusion: The reviewed disclosures do not provide a public post-incident technical report or a precise recovery date.
“Unauthorized access” is not synonymous with confirmed data theft. Conversely, the absence of a public confirmation does not establish that no data was taken.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Regulatory and legal position
IMI’s initial statement said it was taking steps to meet regulatory obligations. Its annual report later said the ICO had been notified and law enforcement engaged. That notification alone does not prove that a personal-data breach was confirmed, nor does it show that the ICO opened an enforcement case, issued a penalty or reached a finding. No such outcome is identified in the reviewed company materials.
Quick wins for a faster PC:
Repair Windows errors before they cause bigger problemsFix Now →Fix the driver behind crashes, sound loss and screen glitchesFind Drivers →Best Value
- POWERFUL SECURITY KEY: The YubiKey 5 is a versatile physical passkey that protects your digital life from phishing attacks. It ensures only you can access your accounts.
- WORKS WITH 1000+ ACCOUNTS: Compatible with popular accounts like Google, Microsoft, and Apple. A single YubiKey 5 secures 100+ of your favorite accounts, including email, password managers, and more.
- FAST & CONVENIENT LOGIN: Plug in your YubiKey 5 via USB and tap it to authenticate. No batteries, no internet connection, and no extra fees required.
- MOST SECURE PASSKEY: Supports FIDO2/WebAuthn, FIDO U2F, Yubico OTP, OATH-TOTP/HOTP, Smart card (PIV), and OpenPGP. That means it’s versatile, working almost anywhere you need it.
- BUILT TO LAST: Made from tough, waterproof, and crush-resistant materials. Manufactured in Sweden and programmed in the USA with the highest security standards.
How to read the timeline
| Date or period | Publicly established information |
|---|---|
| February 6, 2025 | IMI announced unauthorized access, external investigators and containment work, without technical or attribution details. |
| First half of 2025 | IMI reported £25 million of incident-related adjusting items and later described temporary operational impact. |
| Full year 2025 | The annual report described systems being taken offline, ICO and law-enforcement engagement, board oversight and £27.1 million of costs. |
| Through August 18, 2026 | Investor materials showed remediation and cybersecurity improvements, but no public technical post-mortem resolving attribution, root cause or data exfiltration. |
What the public record supports—and what it does not
Confirmed by IMI
- Unauthorized access to company systems occurred.
- IMI used external cybersecurity experts and took containment measures.
- The company later called it a cyber-attack and said certain operations were temporarily affected.
- Systems were taken offline, regulators and law enforcement were contacted, and the board oversaw the response.
- IMI recorded £27.1 million in 2025 incident-related costs.
Not established in the reviewed disclosures
- Who attacked IMI or whether the operation was criminal, state-linked or espionage-related.
- How access was obtained, which systems were compromised or how long the attackers remained present.
- Whether any data was exfiltrated, whether a ransom was demanded or whether a payment occurred.
- Whether regulators imposed penalties or whether litigation followed.
Current status
IMI’s results and reports archive and investor pages continue to publish ordinary financial and business updates. In the latest material reviewed, the company describes the cost and organizational response but does not publish a detailed forensic account. The public record therefore supports a serious cyber-attack with temporary operational effects and material remediation spending, while leaving the technical scope, attribution and data-loss question unresolved.
Quick Recap
Sources
- IMI: Cyber security incident
- London Stock Exchange: IMI cyber security incident
- IMI 2025 annual report
- IMI 2025 interim results
- BleepingComputer contemporaneous report
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.




