Cyber Incident Victim: Pennsylvania Judicial System
Date:
Aug 2025
Location:
United States of America
Summary
The office of the Pennsylvania Attorney General reported that its network hosting website, email and phone services is offline following a recent cyber incident. Officials said they are investigating the cause and working to restore all affected systems while staff continue to support the Commonwealth and coordinate with law enforcement partners. The situation was described as frustrating, with appreciation expressed for the IT team’s around‑the‑clock efforts.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 0 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On Monday, the Pennsylvania Attorney General Dave Sunday posted a notice on his official X account stating that the network hosting services for his office was offline after a recent cyber incident. The notice indicated that the AG office’s website, email and phone lines were affected. Sunday said that steps were being taken to determine the cause of the incident and to restore services across all avenues. He noted that office staff were continuing to advocate on behalf of the Commonwealth while working with supervisors to minimize any interruptions.

Sunday described the situation as frustrating and expressed gratitude for the dedication and professionalism of the office’s Information Technology staff, who were working around the clock to resolve the matter. He stated that the office was collaborating with law enforcement partners to restore systems. Although Sunday did not characterize the outage as a ransomware or denial‑of‑service attack, he acknowledged that such threats are regularly directed at state and local government offices. He referenced the February 2025 cyberattack on the Virginia Attorney General’s office, which had been described as sophisticated by that office’s chief deputy.
The disruption prevented normal access to the AG’s website, email and telephone services, impairing the office’s ability to conduct routine communications and public outreach. Efforts to restore services were ongoing, with the AG emphasizing that work would continue until all avenues were functional. The incident highlighted the vulnerability of government IT infrastructure to cyber threats without specifying the exact nature of the attack.
