Ransomware

City of Wichita Shuts Down Network Following Ransomware Attack

The City of Wichita, Kansas, has shut down its network after falling victim to a file-encrypting ransomware attack.

The City of Wichita, Kansas, has shut down its network after falling victim to a file-encrypting ransomware attack.

The City of Wichita, Kansas, on Sunday announced that it has shut down its computer network after falling victim to a ransomware attack.

The disruptive incident occurred on May 5, when data on certain systems was encrypted by malware, prompting Wichita to turn off some of its systems, as a containment measure, with impact on certain online services.

“We turned off our computer network. This decision was not made lightly but was necessary to ensure that systems are securely vetted before returning to service,” the city said in an incident notice on its website.

It is unclear whether personal information was compromised in the attack, but Wichita said details on the matter will be provided as the investigation into the incident advances.

“We are completing a thorough review and assessment of this matter, including the potential impact on data. Detailed assessments of these types of incidents take time. We thank you for your patience, understanding, and respect for the integrity of this review process,” the city noted.

Wichita says first responders have already switched to business continuity measures to continue providing services.

Advertisement. Scroll to continue reading.

Law enforcement authorities have been notified of the incident and the city has already engaged with third-party specialists to begin the restoration of the impacted systems.

The city said it would not share the identity of the ransomware group responsible for the attack, “for operational security purposes”.

Related: UnitedHealth CEO Says Hackers Lurked in Network for Nine Days Before Ransomware Strike

Related: Ransomware Gang Leaks Data Allegedly Stolen From Government Contractor

Related: United Nations Agency Investigating Ransomware Attack Involving Data Theft

Related: Watch on Demand: Ransomware Resilience & Recovery Summit Sessions

Related Content

Cybercrime

Maksim Silnikau was the creator and administrator of the ransomware group and involved in Angler EK’s distribution.

Data Breaches

An extortion group stole personal, financial, and medical information from the hospital’s network.

Data Breaches

The bank holding company was hacked in June, but the investigation into the incident continues.

Data Breaches

The physical security firm says its alarm monitoring and system functionality have not been affected.

Ransomware

The INC Ransomware gang has been targeting vulnerable SMA1000 appliances for root access and lateral movement.

Data Breaches

Hackers were detected on Analog Devices systems in June, and an investigation found that they stole files.

Data Breaches

Ernst & Young previously confirmed that personal and financial information was stolen from a third-party management platform.

Ransomware

The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version