Ransomware Group Deadlock Hits: The Morton Grove Park District
Summary
In the latest cybersecurity news, The Morton Grove Park District — an organization based in US — has fallen victim to a ransomware attack conducted by the group Deadlock. This data breach, discovered on 2026-07-10T13:14:29.947231+00:00, underscores the increasing need for proactive cybersecurity defenses as we continue through 2026.
Incident Report
| Attribute | Information |
|---|---|
| Target Organization | The Morton Grove Park District |
| Threat Group | Deadlock |
| Summary | The Morton Grove Park District (MGPD) is a separate municipal agency established in 1951, governed by five elected commissioners and subject to Illinois state laws. Their motto is: Everyone who lives in, works in, or visits Morton Grove has constitutional rights, no matter their citizenship or immigration status. The Village is committed to making sure every person feels safe, supported, and respected. More than 50 GB of data containing personal and sensitive information belonging to both internal employees and the organization’s clients and suppliers. Documents on financial plans and internal policies are protected by a non-disclosure policy. (Including racist and sexist insights) We invite all journalists, lawyers, and law enforcement agencies to review this information. |
| Date of Breach | 2026-07-10T13:14:27.732787+00:00 |
| Discovery Date | 2026-07-10T13:14:29.947231+00:00 |
| Region | US |
| Target Domain | mortongroveparks.com |
| Business Sector | Public Sector |
How to reduce your ransomware risk
Most ransomware intrusions start with a stolen password or a phishing email. A few proactive steps sharply cut your exposure:
- phishing simulation — close the gap attackers exploit.
- security awareness training — close the gap attackers exploit.
Want to know if you’re already exposed? Run a free scan with the HookPhish data breach checker.
Disclaimer
HookPhish does not engage in the exfiltration, downloading, taking, hosting, viewing, reposting, or disclosure of any stolen information. All breach data reported here is sourced from publicly available threat intelligence feeds for awareness purposes only.
