Town of Edisto Beach

The Town of Edisto Beach disclosed a potential cybersecurity incident involving email on Jan. 22, 2026. The town later said the event was an isolated cyber fraud scheme that caused an undisclosed financial loss, nearly 89% of which was recovered, with no resident or customer information compromised.
The organization publicly identifies the event as cyber-related. No credible public source clearly documents service disruption.
The incident is confirmed to be cyber-related, but the specific attack mechanism is unknown.
Available evidence indicates that the incident did not materially affect the confidentiality, integrity, or availability of data.
Available evidence establishes that the incident caused no material operational or service disruption.
Available evidence indicates that no extortion demand, threat, communication, or related pressure tactic was identified.
The Town of Edisto Beach experienced a confirmed cyber-enabled fraud incident involving its email environment. The town’s Jan. 22 notice described a potential cybersecurity incident, and its July 10 follow-up confirmed that a computer fraud scheme caused financial theft. The town did not identify malware, ransomware or a threat actor.
The incident caused an undisclosed financial loss but no documented material service disruption. The town said it recovered 88.6% of the loss through insurance proceeds and funds frozen and returned by federal law enforcement. Its forensic investigation found the event isolated and found no customer or resident information compromised.
Confidence is high that cyber-enabled fraud occurred because the town confirmed it after a forensic investigation. Confidence is high that no known customer or resident data was compromised, while the precise fraud method, compromised account or message, and full financial outcome remain unknown.
The town first used qualified cyber language and later confirmed fraud and its limited impact, supporting organization-confirmed cyber transparency and no documented material disruption.
The incident is resolved because the town described it as isolated, reported the recovery result and identified no continuing service impact. The July financial and investigative update does not establish that operational disruption continued through that date.
The public record does not establish the fraud method, account or message involved, initial access, amount lost, full recovery status, recipient, responsible organization or law-enforcement outcome.

We reported the town’s potential cybersecurity incident involving email and its later fraud disclosure.
The town identified a potential cybersecurity incident involving its email environment, notified law enforcement and engaged independent forensic specialists.
The town said an isolated cyber fraud scheme caused an undisclosed loss, nearly 89% was recovered and customer or resident information was not compromised.
The town confirmed an isolated computer fraud scheme caused financial theft, reported 88.6% recovery and said no customer or resident information was compromised.
Signed-in members can report an error, update, or missing source.