United States
USA
Beginning on 8 December 2025, a ransomware incident forced the Cheyenne and Arapaho Tribes to take network systems offline and disrupted computers, email, phone services, schools and government operations. Approximately 80% of employee systems at the Concho headquarters had been restored by 2 January 2026, while remaining restoration continued in phases. The Rhysida group later claimed responsibility and demanded 10 bitcoin; the tribe confirmed the ransomware incident but did not independently confirm Rhysida's attribution or alleged data theft.
Estimated severity
78 / 100
Source reliability
91 / 100
Approximate Date
08/12/2025
Targeted Company
CHEYENNE AND ARAPAHO TRIBES
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
United States
USA
No other affected countries reported
Target country
United States
Affected countries
Impacted regions
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
Incident Sources
Please rotate your phone