DisclosureLens
MalwareGovernmentGovernmentRansomwareData EncryptedData ExfiltratedCustomer Data InvolvedIdentity (basic)Government IDMediumContained

Mower County, Minnesota

bd_fa61ae41b6a44930 · schema v1 · pii pii-v2

Severity

Medium

Discovered

Jun 18, 2025

Filed

Dec 3, 2025

To disclose

Affected

Not disclosed

Confidence

64%

Mower County, Minnesota, notified affected individuals on December 3, 2025, regarding a ransomware attack detected on June 18, 2025. Unauthorized access occurred between June 11 and June 18, 2025. The incident involved the encryption of data and unauthorized access to network systems, resulting in the exfiltration of personal information including names and government identifiers. The County engaged forensic consultants, alerted federal law enforcement, and is offering complimentary identity monitoring services to affected residents.

Incident timeline

undetected · 7 days

Jun 11, 2025

Begins

Jun 18, 2025

Discovered

Dec 3, 2025

Filed

Tracked as a single-filing incident — the only disclosure on record for this event so far.ConfirmedView incident

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.