Our business relies heavily on computer systems, hardware, software, technology infrastructure and online websites, platforms and networks (collectively, "IT Systems") to support both internal and external, including franchisee-related, operations. We own and manage some of these IT Systems but also rely on third parties for a range of IT Systems and related products and services. In addition, we and other parties (such as vendors and franchisees), collect, transmit and/or maintain certain personal, financial and other information about our customers, employees, vendors and franchisees, as well as proprietary information pertaining to our business (collectively, "Confidential Information"). The security and availability of our IT Systems and Confidential Information is critical to our business and regulated by evolving and increasingly demanding laws and regulations in various jurisdictions, certain third-party contracts and industry standards.
The current cyber threat environment presents increased risk for all companies, including companies in our industry. The cybersecurity risks we face include cyber-attacks involving ransomware and malicious software, phishing, and other attempts by third parties and others to access, acquire, use, disclose, misappropriate or manipulate our information, systems, databases, processes and people. We are regularly the target of cyber-attacks and other attempts to breach, or gain unauthorized access to, our systems and databases. Moreover, given the current cyber threat environment, we expect the volume and intensity of cyber-attacks and attempted intrusions to continue to increase. Further, the information systems of third parties upon which we rely in connection with our business, such as vendors, suppliers, franchisees and third-party delivery providers, could be compromised in a manner that adversely affects us and our information systems and business continuity and could result in indemnification claims or other disputes with such third parties. Despite our security measures, we have experienced security incidents from time to time and we may continue to experience such attacks and incidents in the future. In particular, on January 18, 2023, we announced a ransomware attack that impacted certain IT Systems which resulted in the closure of fewer than 300 restaurants in one market for one day, temporarily disrupted certain of our affected systems and resulted in data being taken from our network. We have incurred, and will continue to incur, certain expenses related to this attack, including expenses to respond to, remediate and investigate this matter. We remain subject to risks and uncertainties as a result of the incident, including as a result of the data that was taken from the Company's network.
There is no assurance that the security measures we take to reduce the risk of such incidents and protect our systems will be sufficient. There can be no assurance that our cybersecurity risk management program and processes, including our policies, controls or procedures, will be fully implemented, complied with or effective in protecting our systems and information. Additionally, the cybersecurity risks we face are exacerbated by an increase in the use of and reliance on our digital commerce platforms. Moreover, advanced new attacks against information systems and devices by potential malicious attackers, including nation-state actors, state-sanctioned groups, advanced persistent threats, and known and unknown ransomware groups, increase the risk of cybersecurity incidents, including ransomware, malware and phishing attacks. The rapid evolution and increased adoption of artificial intelligence technologies may also heighten our cybersecurity risks by making cyber-attacks more difficult to detect, contain, and mitigate. Other adversarial cyber actions that may occur, such as credential stuffing or distributed denial-of-service attacks, may affect consumer confidence, our ability to provide digital commerce platforms, or lead to regulatory actions or litigation. Furthermore, the significant increase in remote working and personal device use, increases the risks of cyber incidents and the improper dissemination of personal or Confidential Information.
If our IT Systems or the information systems of any of our franchisees are disrupted or compromised, or the information systems of businesses with which we interact, such as suppliers or distributors or third-party delivery providers, are disrupted or compromised, in a manner which impacts us or our IT Systems, as a result of a cyber-attack, data or security breach, or other security incident, or if our employees, franchisees or vendors fail to comply with applicable laws and regulations or fail to meet contractual and industry standards in connection therewith, any such developments could result in liabilities and penalties, have an adverse impact on our financial results and growth prospects, damage our brands and reputation, cause interruption of normal business operations, cause us to incur substantial costs, result in a loss of consumer confidence and sales and disrupt our supply chain, business and plans. Additionally, such events could result in the loss, misappropriation, corruption or unauthorized access, acquisition, use or disclosure of data or inability to access data, the release of Confidential Information about our operations and subject us to litigation and government enforcement actions. Moreover, any significant cybersecurity event could require us to devote significant management time and resources to address such events, interfere with the pursuit of other important business strategies and initiatives, and cause us to incur additional expenditures, which could be material, including to investigate such events, remedy cybersecurity problems, recover lost data, prevent future compromises and adapt systems and practices in response to such events. There is no assurance that any remedial actions will meaningfully limit the success of future attempts to breach our IT Systems, particularly because malicious actors are increasingly sophisticated and utilize tools and techniques specifically designed to circumvent security measures, avoid detection and obfuscate forensic evidence, which means we may be unable to identify, investigate or remediate effectively or in a timely manner. ?Additionally, while we maintain insurance coverage designed to address certain aspects of cybersecurity risks, such insurance coverage may be insufficient to cover all losses or all types of claims that may arise. Further, our franchisees may not have insurance coverage (or may have insufficient insurance coverage) designed to cover business interruption losses and/or all types of claims that may arise from cybersecurity risks.
Further, the standards and the technology currently used for transmission and approval of electronic payment transactions can put such data at risk, and are determined and controlled by the payment card industry, not by us. If we or our Concepts' franchisees fail to adequately control fraudulent credit card and debit card transactions or to comply with the global Payment Card Industry Data Security Standards, we or our Concepts' franchisees may face civil liability, diminished public perception of our security measures, fines and assessments from the card brands, and significantly higher credit card and debit card related costs, any of which could adversely affect us.