Gov. Lou Leon Guerrero confirmed Saturday that the Government of Guam is actively responding to a widespread cyber incident linked to a critical zero-day vulnerability affecting cPanel-hosted websites globally.

Multiple guam.gov websites may be affected as part of a broader global event impacting systems across multiple jurisdictions. The full scope of the incident remains under investigation.

Out of an abundance of caution, worst-case scenarios under review include potential data disruption, deletion or encryption consistent with ransomware-type activity. There is no confirmation at this time of any breach involving sensitive personal information.

The Office of Technology is leading response and recovery efforts, working with hosting partners to secure systems, assess integrity and restore services using available backups. Immediate patching and system hardening measures are being implemented across all applicable platforms.

The Mariana Regional Fusion Center, the FBI and the Cybersecurity and Infrastructure Security Agency have been notified and are engaged.

"This is a serious situation, and we are treating it with urgency and discipline," Leon Guerrero said. "Our focus is clear: secure our systems, protect the public, and restore services safely and as quickly as possible."

Emergency response operations are not affected. The public is urged to rely only on official government platforms for updates and to remain cautious of phishing attempts or fraudulent websites. Suspicious activity can be reported to the MRFC at 671-475-0400 or mrfc@ghs.guam.gov.