Ransomware

$1.1M Paid to Resolve Ransomware Attack on California County

A $1.1 million payment was made to resolve a ransomware attack on San Bernardino county’s law enforcement computer network.

A $1.1 million payment was made to resolve a ransomware attack on San Bernardino county’s law enforcement computer network.

A $1.1 million payment was made to resolve a ransomware attack on a California county’s law enforcement computer network, Southern California News Group reported.

The San Bernardino County Sheriff’s Department announced in April that a “network disruption” was being investigated by information technology staff and forensic specialists, and that the FBI and Department of Homeland Security were notified.

County spokesperson David Wert said the county paid $511,852 and the remainder was covered by insurance, the news group reported Thursday.

“The decision whether to render payment was the subject of careful consideration,” Wert said.

Sheriff’s Department spokesperson Gloria Huerta said an investigation is continuing to try to determine whether any information was stolen and whether the ransom payment can be traced to identify the hacker.

Sheriff Shannon Dicus said this week that public safety wasn’t compromised by the ransomware attack but it hindered some tasks.

Advertisement. Scroll to continue reading.

Deputies, for example, could not access a system that provides information on whether a person is wanted for crimes elsewhere in the country, so they had to request that other agencies make the record checks, Dicus said.

Ransomware involves hackers essentially holding a computer system hostage by encrypting its files and demanding payment in exchange for the software key.

Related: Ransomware Operators Leak Data Allegedly Stolen From City of Oakland

Related: Ransomware Attack Affects Dallas Police, Court Websites

Related: Western Digital Confirms Ransomware Group Stole Customer Information

Related Content

Data Breaches

A hacker claims to have stolen the information of 2 million Origin Energy customers and is threatening to leak it. 

Data Breaches

The Anubis ransomware group claims to have stolen 1 TB of confidential data from the Coca-Cola subsidiary.

Data Breaches

Hackers exfiltrated personal, financial, and health information from the company’s Oracle EBS instance in August 2025.

Ransomware

The company has yet to determine the full scope, nature, and impact of the incident.

Cybercrime

The D1R cybercrime group claimed to have stolen valuable data from Synopsys and Bosch, threatening to leak it unless a ransom is paid. 

Cybercrime

Angelo Martino, a former ransomware negotiator, was sentenced to 70 months for helping the BlackCat/Alphv group.

Data Breaches

Hackers accessed the institution’s internal network and deleted two drives containing employee, student, and university data.

Artificial Intelligence

Attack demonstrates how LLM agents can combine known exploitation techniques with real-time reasoning to automate complex, multi-stage intrusions.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version