Company Details
city-of-durant-oklahoma
97
268
92
durant.org
0
CIT_9475623
In-progress


City of Durant Company CyberSecurity Posture
durant.orgDurant is a city in Bryan County, Oklahoma, United States and serves as the capital of the Choctaw Nation of Oklahoma. The population was 18,589 at the 2020 census. Durant is the principal city of the Durant Micropolitan Statistical Area, which had a population of 42,416 in 2010. Durant ranks as the second largest city within the Choctaw Nation, following McAlester, and ahead of Poteau. Durant is also part of the Dallas-Fort Worth Combined Statistical Area, anchoring the northern edge. The city was founded by Dixon Durant, a Choctaw who lived in the area,after the MK&T railroad came through the Indian Territory in the early 1870s. It became the county seat of Bryan County in 1907 after Oklahoma statehood. Durant is home to Southeastern Oklahoma State University and the headquarters of the Choctaw Nation. The city is officially known as the Magnolia Capital of Oklahoma. The city and its micropolitan are a major part of the Texoma region.
Company Details
city-of-durant-oklahoma
97
268
92
durant.org
0
CIT_9475623
In-progress
Between 550 and 599

CD Global Score (TPRM)XXXX

Description: **Ransomware Attacks Disrupt Government Services in Ohio, Oklahoma, and Puerto Rico** Over the past week, cybercriminals launched ransomware attacks targeting government systems in Ohio, Oklahoma, and Puerto Rico, disrupting critical services for thousands of residents. In **Durant, Oklahoma**, a city of over 20,000 and the largest settlement on the Choctaw Nation reservation, officials confirmed a ransomware attack on Sunday. The city’s website remains offline, and digital payment systems are affected. While emergency services remain operational via 911, the police department reported network outages, leading to longer wait times. The incident follows a pattern of ransomware attacks on Native American governments this year, with the **RansomHub** gang claiming responsibility for previous strikes in Minnesota and Michigan. Meanwhile, **Lorain County, Ohio**, home to over 315,000 residents, disclosed a network security incident that forced multiple government systems offline. Courts were temporarily shut down, though emergency services remained available. The county has engaged cybersecurity experts to investigate the breach, which follows recent ransomware attacks on Cleveland Municipal Court and Columbus, Ohio, the latter exposing data of over 500,000 residents. In **Puerto Rico**, the Department of Justice and the Puerto Rico Innovation and Technology Service reported a cyberattack targeting the **Criminal Justice Information Office**. As a precaution, services—including criminal record certificate issuance—were suspended while authorities work to contain the breach. The FBI and CISA have not commented on their involvement, though both agencies previously assisted Puerto Rico in responding to a cyberattack on its water supply agency. The attacks highlight the ongoing vulnerability of municipal systems, with recovery efforts often spanning weeks or months. In **Abilene, Texas**, officials are still rebuilding infrastructure after an April ransomware attack, despite refusing to pay the ransom. The city faces potential data leaks of 477 GB of resident information.


City of Durant has 50.0% fewer incidents than the average of same-industry companies with at least one recorded incident.
City of Durant has 27.01% fewer incidents than the average of all companies with at least one recorded incident.
City of Durant reported 1 incidents this year: 0 cyber attacks, 1 ransomware, 0 vulnerabilities, 0 data breaches, compared to industry peers with at least 1 incident.
CD cyber incidents detection timeline including parent company and subsidiaries

Durant is a city in Bryan County, Oklahoma, United States and serves as the capital of the Choctaw Nation of Oklahoma. The population was 18,589 at the 2020 census. Durant is the principal city of the Durant Micropolitan Statistical Area, which had a population of 42,416 in 2010. Durant ranks as the second largest city within the Choctaw Nation, following McAlester, and ahead of Poteau. Durant is also part of the Dallas-Fort Worth Combined Statistical Area, anchoring the northern edge. The city was founded by Dixon Durant, a Choctaw who lived in the area,after the MK&T railroad came through the Indian Territory in the early 1870s. It became the county seat of Bryan County in 1907 after Oklahoma statehood. Durant is home to Southeastern Oklahoma State University and the headquarters of the Choctaw Nation. The city is officially known as the Magnolia Capital of Oklahoma. The city and its micropolitan are a major part of the Texoma region.


Most people know that the National Park Service cares for national parks, a network of over 420 natural, cultural and recreational sites across the nation. The treasures in this system – the first of its kind in the world – have been set aside by the American people to preserve, protect, and share t

Working for Switzerland Seven departments, the Federal Chancellery and around 70 administrative units make up the Federal Administration. With around 38,000 employees, it is one of the largest employers in Switzerland. People from all regions of the country work in the Federal Administration un

Every day the contributions and achievements of State of Michigan employees have a direct impact on over 10 million Michiganders across the state. If you're looking for a fulfilling career in state government that can make a real difference in the lives of others, you can find your place working wit

Victorian local government jobs offer opportunities for people with diverse skills. The sector delivers more than 100 services and employs staff in the areas of health and community care, corporate and business support, engineering, planning and community development, and environment and emergency m

Si necesitas información general y especializada sobre los servicios públicos madrileños puedes llamar al teléfono de Atención al Ciudadano 012. En la Comunidad de Madrid estamos encantados de recibir comentarios y favorecer el diálogo, por eso te proponemos unas normas básicas de participación:

At the Home Office, we help to ensure that the country is safe and secure. We’ve been looking after UK citizens since 1782. We are responsible for: - working on the problems caused by illegal drug use - shaping the alcohol strategy, policy and licensing conditions - keeping the United Kingdom safe

We are the largest and most diverse organisation in our state. We have more than 90 government departments and organisations providing essential services across 4000+ locations—from the Torres Strait to the Gold Coast; Mount Isa to Brisbane. We are passionate about making Queensland better through
Official LinkedIn page for the state of Oregon. Oregon is a state in the Pacific Northwest region of the United States. It is located on the Pacific coast, with Washington to the north, California to the south, Nevada on the southeast and Idaho to the east. The Columbia and Snake rivers delineate mu

The City of Los Angeles employs more than 45,000 people in a wide range of careers. Visit our website for information on current openings, including regular civil service positions, exempt and emergency appointment opportunities, in addition to internships! The City of Los Angeles is a Mayor-Counci
.png)
A county sheriff's office in Oklahoma and a police department in Massachusetts said their networks were recently disrupted by cybersecurity...
Cities and towns would be required under a plan from Gov. Maura Healey to let the state know of any cybersecurity incidents like hacks and...
The city is encouraging residents to watch their accounts, report suspicious activity and consider putting a fraud alert on their credit...
For the latest discoveries in cyber research for the week of 9th June, please download our Threat Intelligence Bulletin.
Ohio, Oklahoma, and Puerto Rico had government systems disrupted by cyberattacks during the past week, reports The Record, a news site by...
Cybercriminals targeted government systems in Ohio, Oklahoma and Puerto Rico over the past week, limiting critical services for thousands.
The city said that some services, including digital and credit card payments, are still impacted by the attack.

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of City of Durant is http://www.durant.org.
According to Rankiteo, City of Durant’s AI-generated cybersecurity score is 584, reflecting their Very Poor security posture.
According to Rankiteo, City of Durant currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, City of Durant has not been affected by any supply chain cyber incidents, and no incident IDs are currently listed for the organization.
According to Rankiteo, City of Durant is not certified under SOC 2 Type 1.
According to Rankiteo, City of Durant does not hold a SOC 2 Type 2 certification.
According to Rankiteo, City of Durant is not listed as GDPR compliant.
According to Rankiteo, City of Durant does not currently maintain PCI DSS compliance.
According to Rankiteo, City of Durant is not compliant with HIPAA regulations.
According to Rankiteo,City of Durant is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
City of Durant operates primarily in the Government Administration industry.
City of Durant employs approximately 97 people worldwide.
City of Durant presently has no subsidiaries across any sectors.
City of Durant’s official LinkedIn profile has approximately 268 followers.
City of Durant is classified under the NAICS code 92, which corresponds to Public Administration.
No, City of Durant does not have a profile on Crunchbase.
Yes, City of Durant maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/city-of-durant-oklahoma.
As of January 06, 2026, Rankiteo reports that City of Durant has experienced 1 cybersecurity incidents.
City of Durant has an estimated 11,806 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Ransomware.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with cybersecurity experts (lorain county), and law enforcement notified with yes (durant), and containment measures with systems taken offline, containment measures with protocols initiated to contain the attack, and remediation measures with replacing network infrastructure (abilene), and communication strategy with social media updates, communication strategy with public advisories..
Title: Ransomware Attacks on Government Systems in Ohio, Oklahoma, and Puerto Rico
Description: Cybercriminals targeted government systems in Ohio, Oklahoma, and Puerto Rico over the past week, limiting critical services for thousands. The city of Durant, Oklahoma, was hit with ransomware, causing its website to go down and impacting digital and credit card payments. Lorain County, Ohio, experienced a network security incident knocking dozens of government systems offline, while Puerto Rico's Justice Department reported a cyberattack affecting the Criminal Justice Information Office.
Type: Ransomware
Threat Actor: RansomHub ransomware gang
Common Attack Types: The most common types of attacks the company has faced is Ransomware.

Data Compromised: 477 GB of data (Abilene, TX)
Systems Affected: websitesdigital and credit card paymentscourt systemscriminal record certificate issuance
Operational Impact: Extended wait times for emergency services, court closures, temporary suspension of services
Identity Theft Risk: Exposure of information of over 500,000 residents (Columbus, OH)
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Personally Identifiable Information, Criminal Records and .

Entity Name: City of Durant
Entity Type: Municipal Government
Industry: Government
Location: Durant, Oklahoma, USA
Size: 20,000+ residents
Customers Affected: 20,000+ residents

Entity Name: Lorain County
Entity Type: County Government
Industry: Government
Location: Lorain County, Ohio, USA
Size: 315,000+ residents
Customers Affected: 315,000+ residents

Entity Name: Puerto Rico Department of Justice
Entity Type: State Government
Industry: Government
Location: Puerto Rico

Entity Name: City of Abilene
Entity Type: Municipal Government
Industry: Government
Location: Abilene, Texas, USA
Size: 130,000 residents
Customers Affected: 130,000 residents

Entity Name: Cleveland Municipal Court
Entity Type: Municipal Government
Industry: Government
Location: Cleveland, Ohio, USA

Entity Name: City of Columbus
Entity Type: Municipal Government
Industry: Government
Location: Columbus, Ohio, USA
Size: 500,000+ current and former residents
Customers Affected: 500,000+ current and former residents

Third Party Assistance: Cybersecurity experts (Lorain County)
Law Enforcement Notified: Yes (Durant)
Containment Measures: Systems taken offlineProtocols initiated to contain the attack
Remediation Measures: Replacing network infrastructure (Abilene)
Communication Strategy: Social media updatesPublic advisories
Third-Party Assistance: The company involves third-party assistance in incident response through Cybersecurity experts (Lorain County).

Type of Data Compromised: Personally identifiable information, Criminal records
Number of Records Exposed: 500,000+ (Columbus, OH)
Sensitivity of Data: High
Data Exfiltration: 477 GB (Abilene, TX)
Data Encryption: Yes (Ransomware)
Personally Identifiable Information: Yes
Prevention of Data Exfiltration: The company takes the following measures to prevent data exfiltration: Replacing network infrastructure (Abilene), .
Handling of PII Incidents: The company handles incidents involving personally identifiable information (PII) through by systems taken offline, protocols initiated to contain the attack and .

Ransom Paid: No (Abilene)
Ransomware Strain: RansomHub
Data Encryption: Yes
Data Exfiltration: Yes (477 GB, Abilene)

Source: City of Durant Facebook

Source: Lorain County Social Media Warnings

Source: Puerto Rico Justice Department Statement
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: City of Durant Facebook, and Source: Lorain County Social Media Warnings, and Source: Puerto Rico Justice Department Statement.

Investigation Status: Ongoing
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Social Media Updates and Public Advisories.

Customer Advisories: Social media updatesPublic notices
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: were Social Media Updates, Public Notices and .

Corrective Actions: Replacing Network Infrastructure (Abilene),
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Cybersecurity experts (Lorain County).
Corrective Actions Taken: The company has taken the following corrective actions based on post-incident analysis: Replacing Network Infrastructure (Abilene), .
Ransom Payment History: The company has Paid ransoms in the past.
Last Attacking Group: The attacking group in the last incident was an RansomHub ransomware gang.
Most Significant Data Compromised: The most significant data compromised in an incident were 477 GB of data (Abilene and TX).
Most Significant System Affected: The most significant system affected in an incident was websitesdigital and credit card paymentscourt systemscriminal record certificate issuance.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Cybersecurity experts (Lorain County).
Containment Measures in Most Recent Incident: The containment measures taken in the most recent incident was Systems taken offlineProtocols initiated to contain the attack.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were 477 GB of data (Abilene and TX).
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 500.0K.
Highest Ransom Paid: The highest ransom paid in a ransomware incident was No (Abilene).
Most Recent Source: The most recent source of information about an incident are Puerto Rico Justice Department Statement, City of Durant Facebook and Lorain County Social Media Warnings.
Current Status of Most Recent Investigation: The current status of the most recent investigation is Ongoing.
Most Recent Customer Advisory: The most recent customer advisory issued was an Social media updatesPublic notices.
.png)
A vulnerability was detected in code-projects Online Music Site 1.0. Affected by this issue is some unknown functionality of the file /FrontEnd/Albums.php. Performing a manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used.
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below enable an attacker to ascertain the existence of absolute path components through the path normalization logic for static files meant to prevent path traversal. If an application uses web.static() (not recommended for production deployments), it may be possible for an attacker to ascertain the existence of path components. This issue is fixed in version 3.13.3.
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below of the Python HTTP parser may allow a request smuggling attack with the presence of non-ASCII characters. If a pure Python version of AIOHTTP is installed (i.e. without the usual C extensions) or AIOHTTP_NO_EXTENSIONS is enabled, then an attacker may be able to execute a request smuggling attack to bypass certain firewalls or proxy protections. This issue is fixed in version 3.13.3.
Multiple D-Link DSL gateway devices contain a command injection vulnerability in the dnscfg.cgi endpoint due to improper sanitization of user-supplied DNS configuration parameters. An unauthenticated remote attacker can inject and execute arbitrary shell commands, resulting in remote code execution. The affected endpoint is also associated with unauthenticated DNS modification (“DNSChanger”) behavior documented by D-Link, which reported active exploitation campaigns targeting firmware variants of the DSL-2740R, DSL-2640B, DSL-2780B, and DSL-526B models from 2016 through 2019. Exploitation evidence was observed by the Shadowserver Foundation on 2025-11-27 (UTC). Affected devices were declared end-of-life/end-of-service in early 2020.
AIOHTTP is an asynchronous HTTP client/server framework for asyncio and Python. Versions 3.13.2 and below allow a zip bomb to be used to execute a DoS against the AIOHTTP server. An attacker may be able to send a compressed request that when decompressed by AIOHTTP could exhaust the host's memory. This issue is fixed in version 3.13.3.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.