CIPP

Florida Ransomware Incidents 2020-2024

Through a search of publicly available news sources, we identified 30 ransomware incidents in the state of Florida occurring between 2020 and 2024. This is an increase from 18 ransomware incidents between 2016 and 2019 (see Florida Ransomware Incidents 16-19). Ransomware attacks have been on the rise against these targets: government agencies, local emergency services, hospitals, small and medium-sized businesses, and small NGOs. The attacked targets share a number of common features: (1) most targeted entities relied heavily on centralized information technology (IT) and operational technology (OT) infrastructures; (2) they were generally not large, high-profile service providers; (3) they did not extensively investigate the incident or seek to attribute or take official action to report or prosecute those responsible; and (4) they typically had sufficient financial resources to pay out a ransom demand. Read our in-depth report for more insights.

Florida Ransomware Incidents 2020-20242026-02-16T16:38:14-05:00

Florida CI: 2025 Cybersecurity Intelligence Assessment

Florida’s critical infrastructure is facing escalating cyber threats that put essential services and public safety at risk. This report analyzes Florida-specific incidents and broader national trends to identify the most urgent threats, including ransomware, cybercriminal activity, nation-state actors, and the growing use of AI in cyberattacks. It offers practical, intelligence-driven recommendations to help leaders strengthen cyber hygiene and enhance resilience across the state.

Florida CI: 2025 Cybersecurity Intelligence Assessment2026-09-21T16:00:12-04:00

Readiness + Resilience: Cyber Florida’s CMMC Level 1 Guide

For small and medium businesses working on federal contracts, the new Cybersecurity Maturity Model Certification (CMMC) can seem overwhelming. Cyber Florida’s new CMMC L1 Guide helps put the new standards into simple language and actionable steps.

Readiness + Resilience: Cyber Florida’s CMMC Level 1 Guide2025-11-21T09:59:54-05:00

Enhancing CI Cyber Resilience through Maturity Modeling

31 July 2024 – Tampa, FL: In 2023, the Florida Center for Cybersecurity at the University of South Florida (aka Cyber Florida at USF) conducted a statewide analysis to assess the cyber readiness of Florida’s critical infrastructure (CI) providers across 16 critical infrastructure sectors. The study – conducted on behalf of the State Legislature in fulfillment of Appropriation 2944B – offered several recommendations to improve cyber resilience and protect Florida’s people, property, and prosperity. Among these recommendations was a call to “Adopt a Florida-specific cyber maturity model for critical infrastructure providers.” Since those recommendations were offered in July of 2023, subsequent cyberattacks against CI providers in Florida have led to data breaches and service disruptions across several critical infrastructure sectors, including healthcare5, education6, the judicial system7, and essential government services8. While a commitment to maturity modeling may not prevent every such incursion, it is a critical step in improving cyber readiness across the state’s critical infrastructure sectors. Maturity models offer organizations a means to assess essential practices and metrics to guide cyber-management decisions strategically. In short, maturity models – like the Balanced Scorecard – help organizations to systematically measure the systems, processes, and practices that determine their cyber health because what gets measured, gets managed.

In recognition of the critical role that cyber resilience plays in protecting Florida’s people, property, and prosperity, this policy brief provides an overview of maturity modeling as well as some suggested steps state leaders may consider to ensure that Florida’s critical infrastructure providers are measuring the right things and deliberately aligning organizational practices with their cyber-readiness goals. This report provides (1) a brief overview of how maturity models work, including a summary of the most commonly employed models in key CI sectors; (2) a review of current cyber vulnerabilities among Florida’s critical infrastructure providers as well as an analysis of how maturity modeling can help CI providers overcome these vulnerabilities; and (3) specific recommendations for integrating maturity modeling into Florida’s ongoing cybersecurity initiatives. While there is no one-size-fits-all solution that will serve the diversity of Florida’s critical infrastructure sectors adequately, the goal of this policy brief is to provide state leaders with practical, data-driven guidance so that they can drive data analysis efforts and better incentivize and support the state’s CI providers in these increasingly critical efforts.

Enhancing CI Cyber Resilience through Maturity Modeling2024-07-31T15:07:34-04:00

Closing the Ransomware Readiness Gap

This policy brief builds on findings from a 2023 statewide assessment of cyber-readiness across Florida’s critical infrastructure sectors. Commissioned by the State Legislature, the original report emphasized the urgent need to close the maturity gap in basic ransomware readiness by 2025. In light of continued ransomware attacks that have disrupted vital services—including healthcare, education, the courts, and local government—this follow-up brief provides a focused analysis of ransomware vulnerabilities among CI providers and outlines a clear, actionable path to enhance statewide cyber-resilience.

Closing the Ransomware Readiness Gap2025-06-06T13:36:12-04:00

Florida Critical Infrastructure Cybersecurity Intelligence Assessment

This comprehensive assessment of the chief cybersecurity threats facing Florida’s critical infrastructure organizations was prepared for Cyber Florida by expert faculty from the University of South Florida’s School of Information.

Florida Critical Infrastructure Cybersecurity Intelligence Assessment2024-07-31T13:20:46-04:00

Florida Ransomware Incidents 2016-2019

n

Prepared by University of South Florida graduate students, this report provides an in-depth analysis of 18 high-profile ransomware incidents targeting Florida public sector entities between 2016-2019. This technical analysis reviews the targets, suspected perpetrators, and tactics used to conduct the attacks. The information gathered is useful for ransomware researchers and security analysts looking for patterns and commonalities among targets and tactics to aid in preventing future attacks.

Florida Ransomware Incidents 2016-20192024-09-10T13:36:58-04:00

Cybersecurity: Are Florida’s Governments Ready?

n

In 2019, Cyber Florida in partnership with the Florida League of Cities, the Florida Local Government Information Systems Association, and others conducted a survey of county and municipal IT managers to determine how prepared they feel they are to respond to and recover from a cyberattack and what the chief obstacles are to become better prepared and more resilient. The outcome was shared with local and state government leaders to help inform decision-making, budgeting, and future legislative initiatives.

Cybersecurity: Are Florida’s Governments Ready?2024-09-10T13:40:17-04:00