Florida Municipality Suffers Cyber Extortion

In May this year the city of Riviera Beach in Florida (pop. 35,000) municipal computer systems went down because of a phishing email that an employee opened, releasing  hacking malware.  Since then the City Council have had no email use or payment options.

This successful attack follows the on suffered by the much larger US City of Atlanta in March 2018. Now the City’s Riviera Beach City Council has now confirmed that it will pay 65 Bitcoins, or around $600k, ransom to get the city’s computer system working and back online and they hope to be given back their encrypted records.

A special council met on Monday evening 17th June and voted to agree that the city’s insurance provider should pay the ransom. Florida’s Police are investigating the phishing and hack.Of course having paid the ransom there is no guarantee that they will get their systems and data returned. Spokeswoman Rose Anne Brown said on Wednesday 19th June that the city has been working with external security consultants and that they have recommended that the ransom be paid. 

Brown agreed that there are no guarantees that the hackers will release the records once the payment has been made.  
The council are also going to spend at least $1m on new computer systems, a new IT specialist and cyber-security.

This attack is the latest in a number of globally serious cyber-attacks and the government has already indicted two Iranian men for attacking the US with at least 200 hundred cyber-hacks against different cities across the US, including Baltimore who refused to pay the hacker ransom.

Now new work is under-way to develop more secure cyber security systems and to protect existing installations. 

News by CSI

You Might Also Read:

Security Flaws In Smart City Technology:

How To Deal With The Rising Tide Of Ransomware:

 

 

« Self-Driving Cars Are All About Surveillance
Turning Amsterdam Into A Smart City »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Infosecurity Europe, 3-5 June 2025, ExCel London

Infosecurity Europe, 3-5 June 2025, ExCel London

This year, Infosecurity Europe marks 30 years of bringing the global cybersecurity community together to further our joint mission of Building a Safer Cyber World.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Snow Software

Snow Software

Snow Software is changing the way organizations think about their technology investments, empowering IT and business leaders to drive transformation with precision and agility.

Forcepoint

Forcepoint

Forcepoint provide a unified, cloud-centric platform that safeguards users, networks and data while eliminating the inefficiencies of managing multiple point security products.

JPCERT/CC

JPCERT/CC

JPCERT/CC is the first Computer Security Incident Response Team (CSIRT) established in Japan.

Focal Point Data Risk

Focal Point Data Risk

Focal Point is a pure-play data risk management provider capable of offering end-to-end consulting, implementation, and training services.

Seric Systems

Seric Systems

Seric is a technology business specialising in security, infrastructure and data management.

S2T

S2T

S2T builds cyber intelligence solutions based on deep expertise in diverse domains such as intelligence, machine learning and AI, big data processing, statistics and linguistics.

ThreatSwitch

ThreatSwitch

ThreatSwitch a software platform for cleared federal contractors to get and stay compliant with NISPOM and Conforming Change 2.

SignalSEC

SignalSEC

SignalSEC provides vulnerability intelligence, malware analysis, penetration testing and associated training services.

Presidio Identity

Presidio Identity

Presidio Identity offers a digital-native approach that brings security, privacy, and simplicity to user authentication and digital interactions.

Regtank Technology

Regtank Technology

Regtank is a one-stop compliance solution for fintechs, navigating compliance, security and risk management.

Ultima

Ultima

Ultima are on a mission to help businesses unlock their true potential by using the right IT to protect your company’s revenue and reputation – 24/7.

Flow Security

Flow Security

Enterprises run on data, Flow secures it at runtime. With a runtime-first approach, Flow is a game-changer in the data security space, securing data itself, beyond the infrastructure it resides in.

Inveo Group

Inveo Group

Inveo group is the Italian leader for the management of privacy and data protection issues.

Digital Twin Consortium (DTC)

Digital Twin Consortium (DTC)

Digital Twin Consortium is a global ecosystem of users who are driving best practices for digital twin usage and defining requirements for new digital twin standards.

CertX

CertX

CertX is a Swiss functional safety, cybersecurity and artificial intelligence certification body.

Equixly

Equixly

Equixly is revolutionizing application security by empowering developers and organizations to build more secure software, elevate their security posture, and stay ahead of emerging threats.