Stevens Point Suspects Attempted Ransomware Attack After Server Disruption

· Original article ↗

Summary

Stevens Point city staff suspect they stopped a ransomware attack early after suspicious activity disrupted city servers. No data theft has been identified, and the city is restoring services while investigating.

Key points

  • City servers were online but failing to communicate, disrupting services.
  • Staff shut down server access and quarantined machines showing suspicious activity while assessing about 240 devices.
  • City officials say the suspected ransomware was stopped before anything was infected or initiated.
  • The city reports no evidence that data was stolen.
  • Emergency services remained fully functional and were not affected.
  • The city added stricter cybersecurity protocols and is investigating how the breach occurred.
  • Officials expect to restore city functions over the next week or two, after verifying systems are safe.

Article Details

Victim Organization
City of Stevens Point
Incident Type
Unauthorized network breach and service disruption; city staff suspect an attempted ransomware attack but say they stopped it before infection or initiation.
Incident Date
2026-09-23
Disclosure Date
2026-09-28
Operational Impact
City servers stopped communicating, disrupting multiple city services. Staff shut down server access, quarantined several machines with suspicious activity, and began assessing approximately 240 devices. Emergency services remained fully functional. The city expected restoration to take one to two weeks.
Claim Status
confirmed

Countries

Industries