Local12 Middletown Cyberattack Exposes Sensitive Resident Data
Article Content
- •Middletown's cyberattack exposed sensitive data, including Social Security numbers.
- •The breach affected city operations and prompted a long-term investigation.
- •Residents are being notified and offered credit monitoring services.
In August 2025, Middletown, Ohio, experienced a cyberattack that compromised sensitive personal data of residents. Unauthorized access occurred between July 29 and August 17, 2025, with files containing names, addresses, Social Security numbers, and financial information being removed from the city's network. The breach disrupted city operations, including water billing, which remained offline until January 2026. As of June 3, 2026, the city began notifying affected individuals and offering free credit monitoring for those whose Social Security numbers were exposed. The investigation revealed no immediate evidence of fraud linked to the incident, but residents are advised to monitor their accounts and consider placing fraud alerts. The city has engaged third-party cybersecurity professionals to enhance its security measures.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track City Of Middletown in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…