Cyber Incident Victim: First Judicial Circuit Court of Florida
Date:
Oct 2023
Location:
United States of America
Summary
A Florida judicial circuit experienced a cybersecurity incident significantly disrupting court operations across four counties, prompting the postponement of non-essential proceedings and rescheduling of hearings. The event forced prioritization of critical cases while causing extended operational delays, with officials advising affected individuals to contact judges’ offices directly for updates. While the incident’s specifics remain undisclosed, it aligns with broader patterns of cyberattacks targeting U.S. courts, which often compromise sensitive data and impede legal processes. The impacted circuit emphasized efforts to maintain public trust through service adjustments amid the disruption.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 1 motive | 2 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On October 1, 2023, Florida’s First Judicial Circuit Court announced an ongoing "information technology security event" disrupting court operations across Escambia, Okaloosa, Santa Rosa, and Walton counties. The court initiated an investigation but did not disclose technical details about the attack’s origin or methodology. Operational disruptions necessitated the cancellation and rescheduling of non-essential court proceedings starting October 2, 2023, with delays expected to persist for several days. Essential proceedings received priority, though the court advised individuals to contact judges’ offices directly by phone for hearing updates. No ransomware claims or attributions were publicly reported, and officials declined to confirm whether data exfiltration occurred. The incident mirrored broader trends affecting U.S. courts, including a February 2023 ransomware attack on Florida’s Supreme Court and operational disruptions in Dallas, Ohio, Wisconsin, Louisiana, and six other states earlier in the year.

The court’s response focused on procedural adjustments rather than technical remediation disclosures. Administrative measures included pausing non-critical operations and implementing extended postponements for non-essential cases. Public communications emphasized operational impacts over forensic findings, noting significant delays to legal processes without specifying recovery timelines. Historical context from cybersecurity experts highlighted courts’ vulnerability due to their storage of sensitive personal data and the cascading effects of delayed judicial proceedings. The circuit’s four-county jurisdiction faced coordinated disruptions, though no county-specific variations in impact severity were detailed. Incident resolution status remained unspecified in available sources as of the announcement date.
