Cyberattacks Disrupt Local Governments Across Four States

August 13, 2026
Cyberattacks Disrupt Local Governments Across Four States
IANS News

Key Points

  • Multiple local governments across four states reported cyberattacks that disrupted public services, emergency operations, and government networks.
  • In California, a cyberattack affected services ranging from 911 routing and emergency dispatch to finance, HR, and public works.
  • IANS Faculty say organizations should identify critical dependencies and ensure essential services can continue operating during a cyber incident.

 

Cyberattacks Disrupt Local Governments Across Four States

Multiple local governments across four states reported cybersecurity incidents that disrupted critical services over the last week.

The highest-profile incident impacted Suisun City, CA on August 7, leading to the closure of several municipal departments for three days.  Officials said malicious software infected and compromised the city’s IT systems, affecting critical public safety operations including 911 routing, police and fire dispatch, records management and other city services.

Federal, state and regional agencies were called in to help investigate the incident, maintain essential services and restore the affected systems.

Elsewhere, the town of Coweta, Oklahoma, experienced a ransomware attack on August 5 that disrupted digital services. On August 7, Mitchell, South Dakota, reported a cyberattack that forced local officials to shut down government networks. On August 10, Washburn County, Wisconsin, disclosed that its phone and fax lines were down following a cyberattack.

 

Big Picture

Local governments remain attractive targets for ransomware operators and other cybercriminals because they often provide essential services with limited resources and little tolerance for downtime.

While the incidents in California, Oklahoma, South Dakota, and Wisconsin appear unrelated, they produced a similar outcome: disruptions that extended well beyond IT systems and affected services residents depend on every day.

"In Suisun City, disruption reached 911 dispatch alongside Planning, Finance, HR, Public Works, and other administrative functions. That suggests critical services shared enough infrastructure or operational dependencies that one compromise would cross boundaries. That's bigger than just a segmentation problem.”  Jeff Brown, IANS Faculty.

The broader lesson is that organizations should not assume they are too small or insignificant to become targets. Attackers often value access, relationships, and connectivity as much as the organization itself.

"A small county network can still be interesting to a sophisticated or even nation-state actor. The county itself may not be the ultimate target. Sometimes a smaller, less-defended organization can provide information, trusted connections, or a quieter path toward something the attacker actually wants.”  Lisa Perdelwitz, IANS Faculty.

 

IANS Faculty Recommendations

  • Know how to operate offline without putting people at risk: Being able to fall back to manual operations for things like 911, fire dispatch, and police communications is critical.
  • Don't mistake redundancy for resilience: Test whether critical workloads can continue operating when the shared services that connect those environments are unavailable or compromised, not just when a region goes down.
  • Prove critical services can survive the loss of shared infrastructure: Run an exercise that removes common dependencies one at a time: identity, DNS, virtualization, storage, privileged access, WAN connectivity, and management tooling.
  • Test alternate operating paths before the primary one fails: Test those paths under realistic conditions, including staffing, access, decision authority, communications, and degraded operations. 


Authors & Contributors

Nuria Diaz Munoz, Author - Security Reporter, IANS News

Jeff Brown, IANS Faculty

Lisa Perdelwitz, IANS Faculty

 

Although reasonable efforts will be made to ensure the completeness and accuracy of the information contained in our News & blog posts, no liability can be accepted by IANS or our Faculty members for the results of any actions taken by individuals or firms in connection with such information, opinions, or advice.

Subscribe to IANS Blog

Receive a wealth of trending cyber tips and how-tos delivered directly weekly to your inbox.

Please provide a business email.