Ransomware attacks on U.S. public sector at record high

September 27, 2023

Ransomware attacks on the U.S. public sector are on track to reach record levels in 2023, with both traditional encrypt-and-extort and newer data theft-only attacks targeting local governments, schools, and other entities.

Security experts say that public sector organizations are attractive targets for ransomware attackers because they often have limited IT budgets and cybersecurity resources, while also holding sensitive data such as housing information, student records, and patient data.

“When you add to that the lack of funding that they have for security, they make an easy target,” said Allan Liska, threat intelligence analyst at Recorded Future.

Fighting back against ransomware attacks is no easy task for public sector organizations. Many are rapidly expanding their digital footprints, but are also adding complexity to their environments that often only a small number of security practitioners are responsible for protecting.

“That challenge can be relatively insurmountable,” said MK Palmore, former FBI agent and director in Google Cloud’s Office of the CISO.

Another challenge is the supply-chain risk posed to public sector organizations, many of which rely heavily on third-party tools and outside contractors.

“Organizations have to do due diligence, which gets to be pretty challenging due to issues like limited workforce and the unwillingness of organizations to adopt tools that would allow this to be automated,” said Liska.

The sources for this piece include an article in TechCrunch.

Top Stories

Related Articles

March 5, 2026 Check Point Software on Wednesday launched a dedicated Canada data region for its CloudGuard Web Application Firewall more...

March 5, 2026 A small development company in Mexico says a compromised Google Cloud API key triggered more than $82,000 more...

March 2, 2026 Thousands of exposed Google Cloud API keys can authenticate to Gemini endpoints when the Generative Language API more...

March 2, 2026 Threat actors are exploiting Microsoft Entra ID through Open Authorization (OAuth) consent abuse, using seemingly legitimate third-party more...

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn