What's Happening?
Kenosha has been identified as the largest city in Wisconsin that does not utilize a registered government domain (such as .gov) for its official email or website, according to a Votebeat analysis of state
data. This practice deviates from cybersecurity best practices recommended by state and federal agencies. While many municipalities, including Kenosha, use custom domains like kenosha.org, these are not restricted to verified government entities, unlike .gov domains. Experts, including Trevor Timmons, vice president of Ready for Tuesday, emphasize that government domains are harder to spoof and less susceptible to phishing attacks. The issue is particularly prevalent in smaller Wisconsin municipalities, where about one in three clerks still use consumer email accounts like Gmail or Yahoo for election business. This contrasts sharply with municipalities over 25,000 residents, none of which use consumer accounts.
Why It's Important?
The absence of a .gov domain for official communications in a city the size of Kenosha poses significant cybersecurity risks and can undermine public trust. Government domains provide a verifiable assurance that information is coming from a legitimate government entity, making it harder for malicious actors to impersonate officials or disseminate false information, especially concerning critical functions like elections. The use of non-government domains, even custom ones, leaves municipalities more vulnerable to phishing, spoofing, and other cyberattacks, which could compromise sensitive data, disrupt services, or spread misinformation. This vulnerability is particularly concerning in the context of election administration, where the integrity of communications is paramount. The disparity between larger and smaller municipalities in adopting these best practices highlights an uneven landscape of cybersecurity preparedness across the state.
What's Next?
With the November election approaching, experts like Trevor Timmons advise against making major changes to email systems immediately. However, municipalities like Kenosha are encouraged to contact the Cybersecurity and Infrastructure Security Agency (CISA) and begin the process of applying for a government domain to prepare for a post-election transition. The Wisconsin Elections Commission has historically provided grants to help local offices improve election security, including moving to government domains, though federal funding for these programs is diminishing. This suggests that the state legislature may need to step in with direct funding if it wishes to continue subsidizing these upgrades. The shift to government domains, while free to register, incurs costs for hosting, technical support, and security, which can be a significant burden for municipalities without dedicated IT staff or substantial budgets.
Beyond the Headlines
The issue of government domain adoption in Wisconsin, particularly in cities like Kenosha, reflects a broader national challenge in modernizing digital infrastructure for local governments. Beyond cybersecurity, the lack of a standardized, verifiable online presence can erode public confidence in official communications and create barriers to civic engagement. This situation highlights the digital divide between well-resourced urban centers and smaller, often rural, municipalities that struggle with limited IT staff and budget constraints. The long-term implications include the potential for increased cyberattacks on local government systems, leading to data breaches, service disruptions, and a decline in public trust. Addressing this requires not only financial investment but also a concerted effort to provide technical assistance and education to local officials, ensuring that all levels of government can meet contemporary cybersecurity standards and maintain transparent, secure communication channels with their constituents.








