CSIDB logo
Incident

Geographic Solutions, Inc.

Incident posture

Attack window
Jun 2022
Location
United States of America
Status
Historical
CIA posture
Available to members
Updated
2025-10-18 00:00

Linked entities

Victim
Geographic Solutions, Inc.
Threat actors
0 actors
Sources
1 source

Timeline

Occurred
Jun 2022
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

A cyberattack targeting software provider Geographic Solutions disrupted unemployment benefit systems across multiple states, causing service outages and payment delays for claimants. The incident forced the company to take affected systems offline, impacting state workforce agencies that rely on its platform to administer benefits. While restoration efforts were underway, the disruption created significant challenges for individuals attempting to access critical unemployment services during the outage period.

Motives

Detailed motive labels are available to members.

0 motives

TTPs

Detailed technique labels are available to members.

0 techniques

Description

A cyberattack targeting Geographic Solutions, Inc., a software vendor providing unemployment insurance systems for multiple U.S. state workforce agencies, disrupted benefit services beginning on or around June 27, 2022. The company took its systems offline in response to the security incident, causing widespread outages affecting unemployment claims processing and payment distribution in several states. Geographic Solutions did not publicly disclose technical details about the attack vector or threat actor, describing it only as a "security issue" requiring immediate containment. States including Nebraska and Louisiana confirmed their unemployment portals became inaccessible, preventing claimants from filing new claims or checking payment statuses. The Nebraska Department of Labor announced it could not process any claims during the outage, while Louisiana's Workforce Commission warned residents about delayed benefit payments.

Geographic Solutions initiated forensic investigations and system restoration efforts, working with third-party cybersecurity experts to assess the breach's scope. By June 30, 2022, some states began restoring partial services, though full operational recovery timelines remained unspecified. The incident caused financial strain for unemployed individuals reliant on timely benefit disbursements, with state agencies directing claimants to offline alternatives like paper forms or call centers. No evidence of data exfiltration or compromise of personal information was confirmed by the vendor or affected states during initial assessments. Service interruptions persisted for multiple days across impacted jurisdictions as the company implemented security enhancements before reactivating systems.

Sources

Sources available to members: 1 source.

CSIDB