Security Experts:

Connect with us

Hi, what are you looking for?



Indiana County Pays $130,000 in Response to Ransomware Attack: Reports

LaPorte County in Indiana pays $130,000 to ransomware cybercriminals

LaPorte County in Indiana pays $130,000 to ransomware cybercriminals

LaPorte County in the U.S. state of Indiana has reportedly paid cybercriminals over $130,000 after they infected its systems with a piece of ransomware. The mayors of two major cities in LaPorte recently pledged not to give in to ransomware demands.

Local CBS and NBC affiliates reported that officials decided to pay the 10.5 bitcoin ransom after the FBI failed to recover the data encrypted by the ransomware. LaPorte county’s insurance will reportedly cover $100,000 of the $130,000.

The ransomware involved in the attack is said to be Ryuk, which, according to some reports, was also involved in the recent attack on Jackson County in Georgia. Jackson paid cybercriminals $400,000 after its systems became infected with file-encrypting malware.

The Michigan City News Dispatch reported that the attack on LaPorte occurred on July 6 and it was confined by the county’s IT department to less than 7 percent of the organization’s laptops, but the ransomware did hit two domain controllers, preventing servers from accessing network services.

The United States Conference of Mayors recently said its over 1,400 members had promised not to give in to ransomware demands. It’s worth noting that two of the biggest cities in LaPorte County, La Porte and Michigan, are both members of the organization.

The list of U.S. cities that have paid up in response to ransomware attacks are West Haven in Connecticut ($2,000 paid), Riviera Beach in Florida ($600,000 paid), and Lake City in Florida ($460,000 paid). However, it has been reported that Lake City still has not managed to recover all of its files, despite paying the ransom.

Related: As Ransomware Rages, Debate Heats Up on Response

Related: Eurofins Scientific Paid Up in Response to Ransomware Attack

Related: Aircraft Parts Maker ASCO Severely Hit by Ransomware

Related: Ransomware Attack Costs Norsk Hydro Tens of Millions of Dollars

Written By

Eduard Kovacs (@EduardKovacs) is a contributing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Click to comment

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this webinar to learn best practices that organizations can use to improve both their resilience to new threats and their response times to incidents.


Join this live webinar as we explore the potential security threats that can arise when third parties are granted access to a sensitive data or systems.


Expert Insights

Related Content


Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.


The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.


Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.


The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Data Breaches

LastPass DevOp engineer's home computer hacked and implanted with keylogging malware as part of a sustained cyberattack that exfiltrated corporate data from the cloud...

Application Security

PayPal is alerting roughly 35,000 individuals that their accounts have been targeted in a credential stuffing campaign.


No one combatting cybercrime knows everything, but everyone in the battle has some intelligence to contribute to the larger knowledge base.

Application Security

GitHub this week announced the revocation of three certificates used for the GitHub Desktop and Atom applications.