County Government Reportedly Paid $1 Million to Cyber Extortion Group
2026-07-07T19:24:26Z•bcf44a96a8370aaba22c819f431408e19bf79f22a7c572528b8a3ea6aff4a3b9
Adobe ColdFusionAnthropic MythosBlogspot-hosted payloadsCISACVE-2026-20896CVE-2026-48282GiteaJanuscapeLinux KVMPureLogVM escapeVeil#Dropactive exploitationextortionfileless malwaregovernment-targetmodular C2post-quantum / Keyfactorransomwaresupply-chain/third-party compromisethreat actor (Iran-linked)
What happened
Feed summarizes multiple active and high-impact incidents: a small Ohio county reportedly paid $1 million to an extortion group; attackers are actively exploiting critical authentication-bypass in Gitea (CVE-2026-20896) to access repos and secrets; a critical Adobe ColdFusion flaw (CVE-2026-48282, CVSS 10.0) is being exploited in the wild; Iran-linked actors used a modular C2 framework and compromised IT service providers to reach high-value Israeli targets; a long‑standing Linux KVM/Januscape vulnerability allows VM escape on Intel/AMD hosts; Veil#Drop campaigns delivered PureLog via Blogspot
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- bcf44a96a8370aaba22c819f431408e19bf79f22a7c572528b8a3ea6aff4a3b9
- Enrichment time
- 2026-07-07T19:24:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.