CSIDB logo
Incident

Prison Rehabilitative Industries and Diversified Enterprises Inc.

Incident posture

Attack window
Dec 2019
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2025-12-09 00:00

Linked entities

Victim
Prison Rehabilitative Industries and Diversified Enterprises Inc.
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Dec 2019
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A Florida-based nonprofit organization providing inmate vocational training programs through the Florida Department of Corrections suffered a ransomware attack disrupting its operations. Prison Rehabilitative Industries and Diversified Enterprises Inc. experienced significant system outages affecting its website and internal infrastructure, with services remaining offline days after the initial compromise. The incident impacted the organization's self-funded operational model, which relies on selling inmate-produced goods and services to sustain rehabilitation initiatives. Ongoing recovery efforts continued as critical systems remained nonfunctional following the cybersecurity breach.

Motives

Detailed motive labels are available to members.

2 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On December 7, 2019, Prison Rehabilitative Industries and Diversified Enterprises Inc. (PRIDE), a Florida-based nonprofit organization, experienced a ransomware attack that disrupted its operations. The attack occurred on a Saturday, compromising the organization's website and critical internal systems. PRIDE, which operates vocational training programs for incarcerated individuals through partnerships with the Florida Department of Corrections, relies on revenue generated from selling inmate-manufactured goods and services to sustain its rehabilitation initiatives. The ransomware infection forced immediate system outages, rendering digital infrastructure inaccessible for multiple days following the initial compromise. Operational continuity was significantly impaired due to the sustained downtime of affected systems.

As of December 11, 2019—four days post-incident—PRIDE's website and compromised systems remained offline, indicating persistent operational disruption. No restoration timeline or technical details about the ransomware variant were disclosed publicly. The organization's self-funded business model, dependent on uninterrupted production and sales of inmate-crafted products, faced direct financial and logistical consequences from the prolonged outage. The incident underscored vulnerabilities in critical infrastructure supporting prison rehabilitation services, though specific containment measures or forensic findings were not reported. Recovery efforts continued without confirmation of whether ransom demands were issued or paid.

Sources

Sources available to members: 1 source.

CSIDB