Vicksburg, Mississippi, shut down city computer systems and disconnected internet operations following a reported ransomware attack, Mayor Willis Thompson said. The temporary shutdown disrupted utility-payment processing and could delay in-person payments, but emergency response and utility services continued. Residents will not face utility disconnections or late-payment penalties during the investigation.
The city is working with the FBI, Department of Homeland Security, state officials, and private cybersecurity experts to restore systems and determine whether personal or confidential information was compromised. The attackers’ identities and any ransom demands have not been disclosed, and unauthorized access to or acquisition of information remains undetermined. The incident highlights the operational impact of municipal ransomware even when essential services remain available.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
Mayor Willis Thompson announced the incident in a statement published in a local newspaper Thursday evening, describing the shutdown as temporary. The city said residents would face neither utility disconnections nor late-payment penalties during the investigation.
Vicksburg reported working with the FBI, Department of Homeland Security, state officials, and private cybersecurity experts on recovery. Investigators were prioritizing whether personal or confidential information belonging to customers, contractors, vendors, employees, or business partners had been compromised.
The city shut down its computer systems and disconnected internet operations following the attack, disrupting utility payments. Emergency response and utility services continued.
Vicksburg, Mississippi, experienced a reported ransomware attack affecting its municipal computer systems.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
3 references tracked. Mallory keeps watching after this page renders.
therecord.media
Open sourcemalware.news
Open sourcedysruptionhub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.