Data breach at software provider to local US governments

The victims have included parts of the state court system and the state transportation department this year, and more than 20 local governments last summer.

Published: 24th September 2020 04:04 PM  |   Last Updated: 24th September 2020 04:04 PM   |  A+A-

Cyber Attack

For representational purposes (Express Illustrations)

By Associated Press

DALLAS: A major provider of software services to local governments and schools across the United States, Tyler Technologies, told customers Wednesday that an unknown intruder broke into its phone and information technology systems.

It could not immediately be determined whether ransomware may have been involved.

The Plano, Texas-based company, whose website was offline, said in an email sent to customers that it discovered the breach Wednesday morning, contacted law enforcement and enlisted outside cybersecurity help.

Tyler customers include Des Moines, Hartford and St. Louis, County, according to a 2019 copy of its website on the Internet Archive. The archived website said its company software is “the perfect fit” for everything from small towns to counties serving more than 2 million people.

Tyler did not immediately respond to phone calls and emails Wednesday. On Twitter, it said “a network issue” was affecting its phone and web site and that “we''re working to resolve as quickly as possible." The company''s home page said it was temporarily unavailable but provided no additional information.

“At this time and based on the evidence available to us to-date, all indications are that the impact of this incident is limited to our internal network and phone systems,” said the email sent to customers and obtained by The Associated Press. “We currently have no reason to believe that any client data, client servers or hosted systems are affected.” An FBI spokeswoman in Dallas could not immediately say whether the agency is involved in any way.

A cybersecurity expert assisting municipalities that are customers of Tyler''s Munis software suite, Mike Hamilton of CI Security, said he was particularly concerned that hackers may have obtained access to the passwords of customers stored on its network and could penetrate their systems.

Hamilton, a former Seattle chief information security officer, said Tyler should be notifying customers to immediately reset all their passwords as a precaution. “It''s completely possible that bad guys have been in there for a good amount of time,” he said.

Munis manages core business functions for government agencies and schools, from payroll to human resources and revenue management.

In ransomware attacks, criminals are increasingly breaking into company and government networks and siphoning out data before scrambling them with encrypted programs and demanding payouts. They threaten to make the stolen data public if the victim doesn''t pay up.

Texas has seen a series of these attacks over the last two years. The victims have included parts of the state court system and the state transportation department this year, and more than 20 local governments last summer.

The Texas Department of Information Resources did not immediately respond to a request for comment.

More from World.

Comments

Disclaimer : We respect your thoughts and views! But we need to be judicious while moderating your comments. All the comments will be moderated by the newindianexpress.com editorial. Abstain from posting comments that are obscene, defamatory or inflammatory, and do not indulge in personal attacks. Try to avoid outside hyperlinks inside the comment. Help us delete comments that do not follow these guidelines.

The views expressed in comments published on newindianexpress.com are those of the comment writers alone. They do not represent the views or opinions of newindianexpress.com or its staff, nor do they represent the views or opinions of The New Indian Express Group, or any entity of, or affiliated with, The New Indian Express Group. newindianexpress.com reserves the right to take any or all comments down at any time.