Suisun City did what any sensible town should do when the lights blinked and the computers started coughing up malware: officials pulled the plug. The northern California city shut down its entire computer network after a cyberattack that threatened its systems and forced 911 calls to be rerouted to the county. Residents kept getting help, but the outage exposed a glaring weakness in municipal cybersecurity and the slow, reactive way local governments handle real threats.
Immediate response: 911 rerouted to Solano County
When the malware appeared, city leaders declared a state of emergency and disconnected the network to stop the infection from spreading. That quick move stopped a worse collapse. Police and fire were still sent to calls because the city forwarded 911 to the Solano County dispatch center. In short: people’s safety was preserved, but basic city services — paying bills, pulling permits, accessing records — went dark. That’s the new normal when a single intrusion can freeze an entire town.
Why this matters: municipal cybersecurity failures
Municipal networks are attractive targets. They run emergency systems, permit databases, payroll and billing. Yet too often cities treat cybersecurity like an afterthought — a checkbox on a budget form. When a town of 30,000 can be knocked offline and forced to reroute urgent calls, it proves we are still underfunding and under-prioritizing public safety on the digital battlefield. Add in warnings about foreign-backed cyberthreats, and the risk looks less like fiction and more like a predictable failure.
Fixes that won’t wait for another attack
There are practical, affordable steps cities can take now. Segment and isolate emergency systems from municipal email and billing networks. Keep offline backups and paper fallbacks for critical services. Run regular drills and hire 24/7 monitoring or partner with private cybersecurity firms. Use federal grants for critical infrastructure upgrades and demand accountability from elected officials who sign off on budgets. This isn’t rocket science; it’s basic risk management. If the city had hardened a few systems first, citizens wouldn’t be paying for downtime with lost permits and headaches.
Don’t treat this as just another glitch
Suisun City’s shutdown should be a wake-up call, not a headline that fades by Monday. We can applaud the decision to pull the plug and keep people safe. Then we should ask hard questions about why the plug was needed in the first place. Leaders who delay upgrades, cut corners, or treat cybersecurity like a low-priority expense are gambling with public safety. If we want communities that are safe in both the real world and the digital one, it’s time to fund, harden, and rehearse for the threats we already know are coming — before the next attack turns routine paperwork into an emergency.

