US illegal immigration detention center operator hit by ransomware attack

(Image credit: Shutterstock)

A company responsible for operating privately-run prisons, as well as detention centers for illegal immigrants, has suffered a ransomware attack. The GEO Group, which operates secure facilities across the US and internationally, confirmed that sensitive information relating to inmates and residents was exposed during the incident.

Specifically, the ransomware attack involved personally identifiable information and health data relating to the South Bay Correctional and Rehabilitation Facility in Florida, a youth facility in Marienville, Pennsylvania and another facility in California that is now closed. 

Employee data stored on two corporate servers was also compromised during the incident, which took place back in August.

“Upon discovery on August 19, 2020, GEO promptly launched an investigation, engaged industry-leading cybersecurity firms to respond to the incident, and notified its customers and law enforcement,” a company press release stated. 

“GEO implemented several containment and remediation measures to address the incident, restore its systems and reinforce the security of its networks and information technology systems. The company recovered its critical operating data and, based on its assessment and on the information currently known and obtained through the investigation, the company does not believe the incident will have a material impact on its business, operations or financial results.”

Prison break

Currently, it is not clear whether GEO managed to restore the compromised data by using backup solutions or if the ransom was paid to the cyberattackers. GEO did state that it is unaware of any misuse of information stemming from the incident.

Although the ransomware attack only affected a small proportion of GEO’s security facilities, the company is sending data breach notification letters to all affected individuals. Although the breach is unlikely to cause long-term financial damage to GEO, shares in the company did fall in the immediate aftermath of the disclosure.

Via ZDNet

TOPICS
Barclay Ballard

Barclay has been writing about technology for a decade, starting out as a freelancer with ITProPortal covering everything from London’s start-up scene to comparisons of the best cloud storage services.  After that, he spent some time as the managing editor of an online outlet focusing on cloud computing, furthering his interest in virtualization, Big Data, and the Internet of Things. 

Latest in Security
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Coinbase targeted after recent Github attacks
hacker.jpeg
Key trusted Microsoft platform exploited to enable malware, experts warn
IBM office logo
IBM to provide platform for flagship cyber skills programme for girls
Oracle
Oracle denies data breach after hacker claims to hold six million records
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Latest in News
A phone showing a ChatGPT app error message
ChatGPT was down for many – here's what's happened
AirPods Max with USB-C in every color
Apple's AirPods Max with USB-C will get lossless audio in April, but you'll need to go wired
A woman sitting in a chair looking at a Windows 11 laptop
It looks like Microsoft might have thought better about banishing Copilot AI shortcut from Windows 11
US flags
US government IT contracts set to be centralized in new Trump order
Tesla Roadster 2
Tesla is still taking deposits on its long overdue Roadster, despite promising it would arrive in 2020
Samsung HW-Q990D soundbar with Halloween theme over the top
Samsung promises to repair soundbars bricked by its disastrous software update for free – but it'll probably involve shipping