Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Cook County

Cook County Vendor Cyber Rating & Cyber Score

cookcountyil.gov

Toni Preckwinkle is the 35th president of the Cook County Board of Commissioners, an office she has held since 2010. A dedicated and effective public servant, President Preckwinkle has worked tirelessly and collaboratively to reshape County government through increased fiscal responsibility, transparency and improved services. As the top executive in Cook County, President Preckwinkle oversees one of the nation’s largest public health and hospitals systems and one of the nation’s largest criminal justice systems. President Preckwinkle is a lifelong advocate for equity and equality, and through her work as president, has fought to improve health care access, bring increased fairness to the criminal justice system and expand employment


Cook County A.I CyberSecurity Scoring

Cook County
Company Information
Website:http://cookcountyil.gov
Employees number:2,348
Number of followers:0
NAICS:92
Industry Type:Government Administration
Homepage:cookcountyil.gov
Cook County Risk Score (AI oriented)
Between 750 and 799
logo
Cook CountyGovernment Administration
Updated:
31/03/2026
799/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Cook County Global Score (TPRM)
xxxx
logo
Cook CountyGovernment Administration
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Cook County
Cook CountyFair
Current Score
799Baa (FAIR)
01000
4 incidents
-25 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
801Before Incident
MAY 2026
801Before Incident
APRIL 2026
800Before Incident
MARCH 2026
799Before Incident
FEBRUARY 2026
798Before Incident
JANUARY 2026
797Before Incident
DECEMBER 2025
825Before Incident
Breach
25 Dec 2025Cook County
Cook County Sheriff’s Office and Cook County: Cyber security concerns spur Code Red changes and county URL shift

Code Red Data Breach and Cyber Security Updates in Cook County

796After Incident
CRITICAL-29
CLECOO1766706918
Cook County Overhauls Code Red System After Data Breach Exposes User Information The Cook County Sheriff’s Office recently announced temporary disruptions to its Code Red emergency alert system following a data breach that compromised user data. Code Red, part of the Integrated Public Alert and Warning System (IPAWS), enables government agencies to send critical public safety notifications. According to Rowan Watkins, Director of County Management Information Systems, the breach exposed names, contact details, and passwords of individuals registered for the service. The stolen data could be exploited for phishing attacks, with bad actors impersonating local government officials to deceive recipients. Watkins warned that reused passwords—particularly those linked to banking or other sensitive accounts—pose an additional risk, as attackers may attempt to access multiple platforms. The security flaw has since been addressed, and Code Red has launched an updated system. Existing users will have their accounts manually migrated by the sheriff’s department, requiring no action on their part. However, Watkins noted a surge in sophisticated phishing attempts targeting the county, urging residents to verify suspicious communications. In response to the incident, Cook County is also transitioning its digital infrastructure to enhance security. Over the next six months, the county will phase out its long-standing cook.co.mn.us domain in favor of a .gov URL, a move designed to reduce confusion and make it harder for scammers to mimic official communications. While current URLs will remain active, they will redirect to the new addresses. The changes reflect broader efforts to strengthen cybersecurity amid rising threats, with Watkins emphasizing the need for improved public awareness of fraudulent tactics.
INCIDENT DETAILS -
TYPE
Data Breach
MOTIVATION
Phishing and Credential Theft
IMPACT
Data Compromised: Names, contact information, and passwordsSystems Affected: Code Red (IPAWS Integrated Public Alert Warning System)Downtime: Temporary disruptionOperational Impact: Manual migration of user accounts to a new systemBrand Reputation Impact: Increased risk of phishing attacks impersonating local governmentIdentity Theft Risk: High (due to exposure of personally identifiable information and passwords)
DATA BREACH
NamesContact InformationPasswordsSensitivity Of Data: High (personally identifiable information and passwords)Personally Identifiable Information: Yes
NOVEMBER 2025
728Before Incident
OCTOBER 2025
727Before Incident
SEPTEMBER 2025
726Before Incident
AUGUST 2025
746Before Incident
Cyber Attack
18 Aug 2025Cook County
Cook County (Minnesota)

Cyber Attack on Cook County, Minnesota (Phishing and Potential Ransomware Threat)

725After Incident
HIGH-21
COO409081825
Cook County, Minnesota, experienced a sophisticated phishing-based cyber attack where hackers compromised a county employee’s email via a malicious link sent from a trusted partner organization’s legitimate account. The breach triggered a domino effect, risking further phishing propagation across interconnected municipal systems. While the attack was contained using the county’s incident response plan, it disrupted operations and necessitated coordination with state agencies to mitigate risks. The attack exploited AI-driven low-barrier cybercrime tools and dark web resources, reflecting the escalating threat landscape targeting local governments. Though no ransomware was explicitly confirmed in this incident, the method mirrored tactics used in broader criminal or state-sponsored campaigns, emphasizing vulnerabilities in public-sector cybersecurity. The breach underscored the potential for cascading impacts across linked agencies, including emergency services, had it escalated.
INCIDENT DETAILS -
TYPE
PhishingPotential Ransomware (referenced in context)Social Engineering
MOTIVATION
Potentially Financial (Ransomware Context)Disruption (DoS Mentioned)Espionage or State-Sponsored (implied)
IMPACT
Email Account DataPotential Sensitive Communications (implied)Employee Email AccountPotential Connected Systems (domino effect risk)Incident Response ActivationInter-Agency Coordination RequiredPotential Disruption to ServicesPotential Erosion of Public Trust in Municipal CybersecurityPotential (if PII accessed via email)
DATA BREACH
Email CommunicationsPotentially Sensitive Municipal DataModerate to High (government communications)Potential (if emails contained PII)
JULY 2025
745Before Incident
JULY 2018
744Before Incident
Data Leak
01 Jul 2018Cook County
Cook County

Cook County Traffic Citation Data Breach

677After Incident
CRITICAL-67
COO021101122
Cook County failed to protect the public's personal information. The private information of anyone issued a traffic citation in the state of Illinois has been readily available to anyone who asks for it. Personal information such as birthdays, addresses, license plate numbers and more. They were able to pull up sensitive information of public officials including Chicago Mayor Rahm Emanuel and Cook County Sheriff Tom Dart. CBS also found information for everyone including celebrity athletes, federal judges, police officers and domestic violence victims.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
birthdaysaddresseslicense plate numbers
DATA BREACH
birthdaysaddresseslicense plate numbersSensitivity Of Data: High
JUNE 2010
767Before Incident
Ransomware
16 Jun 2010Cook County
Cook County

Cooke County Ransomware Attack

643After Incident
HIGH-124
COO14216123
Cooke County in Texas was apparently hit by a gang using REvil ransomware. Cooke County had a population of 38,437 at the last US census in 2010 and the seat of the county is in Gainesville. Malicious attackers had posted screenshots of what they claim are documents and data from the county's police department on the dark web.
INCIDENT DETAILS -
TYPE
Ransomware
MOTIVATION
Financial gain
IMPACT
Screenshots of documents and data from the county's police department
DATA BREACH
Police department documents and data

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Cook County ?
?
What was Cook County's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Cook County's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Cook County's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Cook County's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Cook County's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Cook County's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Cook County's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Cook County's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Cook County's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Cook County's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Cook County's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Cook County's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Cook County ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Cook County's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?