LACROSSE, Wis. – For the first time since its computer systems went out almost 1-1/2 weeks ago, Kwik Trip acknowledged being the victim of  “a cybersecurity incident.” The company fell short of calling it a “cyberattack.” Nor did it say whether there had been any ransom demands from an attacker in exchange for keys to regain control the massive and interconnected Kwik Trip computer systems. If ransom were demanded, how much? The company didn’t say. And were a ransom paid?  That question too remained unanswered, The latest corporate communication statement was from John McHugh, vice president of external relations. He was the highest corporative executive  to issue an update so far. McHugh said the crippled systems were for productions facilities in La Crosse, some internal communication systems, and the Kwik Rewards, he said, was operating again at some of Kwik Trip’s 800 stores. “We anticipate all locations to be successfully processing loyalty transactions within the next few days, he said.

MCHUGH kohn KWIKVicep pr - Winona Journal

McHugh. Chief of Kwik Trip public relations.

Verbatim

McHugh: “Although a thorough forensic investigation is still ongoing and further information may be uncovered, the current findings indicate that Kwik Trip experienced a cybersecurity incident that caused disruption to systems located on the company’s internal network. The incident was detected within hours and mitigation efforts began immediately with the assistance of external cybersecurity experts. The investigation into the nature and scope of this is ongoing and in its early stages. Done correctly and thoroughly, these investigations take time to complete. To date, there is no indication that guest’s payment card information was involved.”