County Government Reportedly Paid $1 Million to Cyber Extortion Group

2026-07-07T19:24:26Zbcf44a96a8370aaba22c819f431408e19bf79f22a7c572528b8a3ea6aff4a3b9
Adobe ColdFusionAnthropic MythosBlogspot-hosted payloadsCISACVE-2026-20896CVE-2026-48282GiteaJanuscapeLinux KVMPureLogVM escapeVeil#Dropactive exploitationextortionfileless malwaregovernment-targetmodular C2post-quantum / Keyfactorransomwaresupply-chain/third-party compromisethreat actor (Iran-linked)

What happened

Feed summarizes multiple active and high-impact incidents: a small Ohio county reportedly paid $1 million to an extortion group; attackers are actively exploiting critical authentication-bypass in Gitea (CVE-2026-20896) to access repos and secrets; a critical Adobe ColdFusion flaw (CVE-2026-48282, CVSS 10.0) is being exploited in the wild; Iran-linked actors used a modular C2 framework and compromised IT service providers to reach high-value Israeli targets; a long‑standing Linux KVM/Januscape vulnerability allows VM escape on Intel/AMD hosts; Veil#Drop campaigns delivered PureLog via Blogspot

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
bcf44a96a8370aaba22c819f431408e19bf79f22a7c572528b8a3ea6aff4a3b9
Enrichment time
2026-07-07T19:24:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.