Qilin Purports Breach of US Electric Cooperative’s Cybersecurity Measures
Ransomware Attack on Tennessee Valley Electric Cooperative
A ransomware group known as Qilin has claimed responsibility for breaching the systems of Tennessee Valley Electric Cooperative, a utility that serves West Tennessee’s Wayne and Hardin Counties.
Details of the Attack
The attack, which was reported by Cybernews, may have resulted in the theft of sensitive organizational data, including employee and customer information. Qilin did not publicly release any samples of the allegedly stolen data, making it unclear what specific information was compromised.
Previous Attacks by Qilin
This is not the first time Qilin has targeted US electric cooperatives. In 2025, the group allegedly attacked Karnes Electric Cooperative, which serves approximately 23,000 households, and San Bernard Electric Cooperative, which serves roughly 28,000 households. Qilin also claimed to have stolen 222 GB of data from Spark Power, a Canada-based electrical services company that operates in the US.
Concerns and Implications
The attack on Tennessee Valley Electric Cooperative is a concerning example of the growing threat of ransomware to critical infrastructure. Ransomware groups like Qilin often target organizations in the energy sector, which can have devastating consequences for the communities they serve.
Recommendations and Conclusion
The attack on Tennessee Valley Electric Cooperative is also a reminder of the importance of transparency and communication in the event of a security incident. By acknowledging the breach and providing timely updates, organizations can help to mitigate the impact of the attack and maintain trust with their customers and stakeholders.
As the threat of ransomware continues to evolve, it is essential that organizations in the energy sector and beyond remain vigilant and proactive in their cybersecurity efforts. By working together, we can reduce the risk of ransomware attacks and protect the critical infrastructure that our communities rely on.
