WTG A.I CyberSecurity Scoring
WTG
Company Information
Website:https://www.winslowtg.com/
Employees number:92
Number of followers:3,011
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:winslowtg.com
WTG Risk Score (AI oriented)
Between 700 and 749
WTGIT Services and IT Consulting
Updated:
31/03/2026
31/03/2026
746/1000
Moderate
Ba
WTG Global Score (TPRM)
xxxx
WTGIT Services and IT Consulting
Score locked

WTGModerate
Current Score
746Ba (MODERATE)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
747
JUNE 2026
746
MAY 2026
746
APRIL 2026
746
MARCH 2026
746
FEBRUARY 2026
746
JANUARY 2026
745
DECEMBER 2025
745
NOVEMBER 2025
745
OCTOBER 2025
744
SEPTEMBER 2025
744
AUGUST 2025
744
SEPTEMBER 2023
751
Cyber Attack
06 Sep 2023 • WTG
Wasabi Technologies, Winslow Technology Group, Calvary Design Team and Inc.: Co. hit by ransomware attack can sue IT firms for negligence
Calvary Design Team v. Wasabi Technologies, LLC, et al. - Ransomware Data Destruction Case
733
CRITICAL-18
WINCALWAS1774953031
Court Ruling Expands Liability for Ransomware Data Loss in Landmark Cybersecurity Case
A Massachusetts Superior Court judge has ruled that the economic loss doctrine does not bar negligence claims in a case involving a 2023 ransomware attack that destroyed a tech company’s critical data. The decision in Calvary Design Team, Inc. v. Wasabi Technologies, LLC, et al. marks a significant shift in how courts may treat cybersecurity failures, particularly when electronic data is permanently erased.
### Key Details of the Incident
- Who: Calvary Design Team, a New York-based automation and robotics firm, sued Winslow Technology Group (a Massachusetts IT services provider) and Wasabi Technologies (a cloud storage vendor) after a LockBit 3.0 ransomware attack in September 2023.
- What Happened: A hacker infiltrated Calvary’s systems, deleted all cloud-stored data, and demanded a $4 million ransom for restoration. The attack exploited weak security controls, including the absence of multi-factor authentication (MFA) a feature Wasabi offered but Calvary had not enabled.
- Legal Claims: Calvary alleged negligence, gross negligence, breach of contract, fraudulent misrepresentation, and violations of Massachusetts’ consumer protection law (Chapter 93A).
### Court’s Ruling: Data Destruction Qualifies as Property Damage
Judge Christopher K. Barry-Smith denied the defendants’ motion to dismiss, finding that:
- The economic loss doctrine does not apply because the complete deletion of Calvary’s data constituted property damage, not just economic loss. Unlike prior data breach cases (where courts barred claims over unauthorized access or financial fraud), this attack involved permanent destruction of business-critical data.
- Contract and negligence claims survive, though the fraudulent misrepresentation claim was dismissed for lack of evidence of intent.
- A limitation of liability clause in Winslow’s contract may still restrict damages, but the judge ruled it did not warrant dismissal at this stage.
### Expert Reactions: A Double-Edged Sword for Cybersecurity Liability
- B. Stephanie Siegmann (cybersecurity attorney): Supported the ruling, arguing that data is property with economic value, and its destruction should not be shielded by the economic loss doctrine. However, she noted Calvary’s failure to implement MFA a basic security measure could undermine its negligence claims at trial.
- Colin J. Zick (data security attorney): Criticized the decision, warning it could increase costs for IT service providers and lead to higher prices or business closures. He questioned whether temporary data loss (restored after ransom payment) truly qualifies as property damage.
- Michael P. Burke (cybersecurity attorney): Agreed with the ruling, stating that gross negligence claims should override contractual liability limits when data is wiped out.
### Broader Implications
The case sets a precedent that ransomware attacks resulting in data destruction may expose IT vendors and cloud providers to negligence lawsuits, even when contracts limit liability. However, the ruling also highlights the shared responsibility between businesses and service providers in implementing security measures like MFA.
The decision is expected to influence future cybersecurity litigation, particularly in cases where data loss rather than mere exposure is the primary harm.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for WTG ??
What was WTG's A.I Rankiteo Cyber Score in June 2026 ??
What was WTG's A.I Rankiteo Cyber Score in May 2026 ??
What was WTG's A.I Rankiteo Cyber Score in April 2026 ??
What was WTG's A.I Rankiteo Cyber Score in March 2026 ??
What was WTG's A.I Rankiteo Cyber Score in February 2026 ??
What was WTG's A.I Rankiteo Cyber Score in January 2026 ??
What was WTG's A.I Rankiteo Cyber Score in December 2025 ??
What was WTG's A.I Rankiteo Cyber Score in November 2025 ??
What was WTG's A.I Rankiteo Cyber Score in October 2025 ??
What was WTG's A.I Rankiteo Cyber Score in September 2025 ??
What was WTG's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on WTG's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with WTG ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view WTG's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?