Updated Monthly — May 2026

Ohio Cybersecurity
Breach Tracker

Confirmed data breaches, ransomware incidents, and critical CISA advisories affecting Ohio businesses, healthcare providers, local governments, and schools. Curated monthly by Securafy's security team.

Last updated: May 14, 2026  ·  Next update: June 2026
47
Confirmed Ohio breaches
tracked in 2025–2026
$1.85M
Avg. ransomware
recovery cost (Ohio)
197
Avg. days before
breach detected
0
Ransomware incidents
at Securafy clients

⚠️ May 2026 Active Alert: CISA issued an emergency directive regarding a critical vulnerability in widely-used Ohio business VPN software. Unpatched systems are actively being exploited. See full advisory →

Recent Ohio Incidents — 2026

DateOrganization TypeSectorIncident TypeSeverityStatus
May 2026Northeast Ohio school districtEducationRansomware — student records encryptedCriticalInvestigating
May 2026Columbus-area law firmLegalBusiness email compromise — wire fraud attemptHighContained
Apr 2026Midwest regional hospital networkHealthcarePHI exposure — misconfigured cloud storageCriticalReported to OCR
Apr 2026Ohio county governmentGovernmentRansomware — court records systemCriticalRecovery ongoing
Apr 2026Cleveland-area dental practice groupHealthcareCredential theft — patient portal breachHighNotification sent
Mar 2026Ohio defense manufacturerManufacturingSupply chain compromise — vendor portalCriticalUnder investigation
Mar 2026Columbus community bankFinancialPhishing campaign — employee credentialsHighContained
Mar 2026Akron-area veterinary groupSMBRansomware — practice management systemHighRestored from backup
Feb 2026Ohio university medical centerHealthcareRansomware — 48-hour EHR outageCriticalRestored
Feb 2026Statewide accounting firmFinancialTax data breach — client SSNs exposedCriticalSEC & state notified
Jan 2026Northeast Ohio police departmentGovernmentCJIS data exposure — unauthorized accessCriticalFBI involved
Jan 2026Ohio manufacturing consortiumManufacturingRansomware — 3-week production haltCritical$2.3M recovery cost

Active CISA Advisories — Ohio Relevant

May 2026 · Emergency Directive
Critical VPN Vulnerability — Actively Exploited
CISA issued an emergency directive for a critical vulnerability in widely-deployed business VPN software. Ohio businesses using unpatched versions are at immediate risk of unauthorized network access. Patch immediately or isolate affected systems.
Apr 2026 · High Severity
Healthcare Sector Targeted — Ransomware Campaign
FBI and CISA issued a joint advisory warning of an active ransomware campaign specifically targeting Midwest healthcare organizations. Recommended actions include MFA enforcement, network segmentation review, and offline backup verification.
Apr 2026 · High Severity
Business Email Compromise — Law Firms & Professional Services
IC3 advisory documenting a surge in BEC attacks against Ohio law firms and accounting practices. Attackers are impersonating managing partners to redirect wire transfers. Recommended: out-of-band verification for any payment request over $5,000.
Mar 2026 · Medium Severity
CMMC Compliance Deadline — Defense Contractors
DoD reiterated CMMC Level 2 compliance requirements for defense contractors in the supply chain. Ohio manufacturers with DoD contracts who have not completed their assessment are at risk of contract disqualification.

2025 Summary — Ohio Breach Statistics

In 2025, Securafy tracked 35 confirmed cybersecurity incidents affecting Ohio organizations. Key findings:

Methodology: This tracker compiles information from CISA advisories, HHS Office for Civil Rights breach portal, Ohio AG notifications, FBI IC3 reports, and public disclosures. Organization names are omitted or generalized where notifications are still in progress to protect ongoing investigations. Data is updated monthly. Sources available on request: security@securafy.com

Is Your Business on Next Month's List?

A free 47-point security assessment shows exactly where your exposure is — before an attacker finds it first.