Connecticut city of West Haven assessing impact of cyberattack

Avatar

The government of West Haven, Connecticut, says it is investigating a cyberattack that recently forced it to temporarily shut down all of its IT systems. 

In an update on January 11, Mayor Dorinda Borer said “an IT system security incident” on an unspecified day had forced the shutdown. The city initially said in a Facebook post on December 26 that the government was “experiencing a network disruption.”

The city is still assessing what data might have been affected by the incident, the update said.

“As a result of the city’s established practices and general preparedness for a situation like this, the systems impacted by this incident were backed up in a manner that allowed for all systems to be operational within a few days,” the city said. 

The city of more than 50,000 residents near New Haven and Yale University did not respond to requests for comment about whether the incident was a ransomware attack. 

The statement from January 11 said more information will be released once the investigation has been completed. 

The attack was claimed by the Qilin ransomware group on January 11. The group drew international outrage last summer after it disrupted healthcare across London by attacking blood testing giant Synnovis. 

Sensitive healthcare data for nearly 1 million people was leaked after the attack and more than 1,100 operations were postponed due to the lack of Synnovis’ pathology services. Qilin actors allegedly demanded a $50 million ransom.

The gang emerged in 2022 as a ransomware-as-a-service operation and has targeted a variety of organizations across the U.S. and Europe. Cybersecurity experts infiltrated the group’s systems in 2023 and found ransom demands amounting to millions of dollars. 

Experts tracked at least 25 confirmed attacks by Qilin with more than 100 more unconfirmed incidents launched by the group’s hackers.

The attack on West Haven comes as several U.S. municipalities report holiday cyber incidents. Elsewhere in New England, the Massachusetts town of Bourne reported on January 11 that its IT network had been compromised.

CybercrimeNewsNews BriefsGovernment
Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

No previous article

No new articles

Jonathan Greig

is a Breaking News Reporter at Recorded Future News. Jonathan has worked across the globe as a journalist since 2014. Before moving back to New York City, he worked for news outlets in South Africa, Jordan and Cambodia. He previously covered cybersecurity at ZDNet and TechRepublic.

 

Total
0
Shares
Previous Post

Tennessee-based mortgage lender confirms December cyberattack

Next Post

US issues final rule barring Chinese, Russian connected car tech

Related Posts

Chinese Smishing Kit Powers Widespread Toll Fraud Campaign Targeting U.S. Users in 8 States

Cybersecurity researchers are warning of a "widespread and ongoing" SMS phishing campaign that's been targeting toll road users in the United States for financial theft since mid-October 2024. "The toll road smishing attacks are being carried out by multiple financially motivated threat actors using the smishing kit developed by 'Wang Duo Yu,'" Cisco Talos researchers Azim Khodjibaev, Chetan
Avatar
Read More

U.S. Charges Yemeni Hacker Behind Black Kingdom Ransomware Targeting 1,500 Systems

The U.S. Department of Justice (DoJ) on Thursday announced charges against a 36-year-old Yemeni national for allegedly deploying the Black Kingdom ransomware against global targets, including businesses, schools, and hospitals in the United States. Rami Khaled Ahmed of Sana'a, Yemen, has been charged with one count of conspiracy, one count of intentional damage to a protected computer, and one
Avatar
Read More