California city reports ransomware attack as LA transit agency finds ‘unauthorized activity’
2026-03-21T02:51:56Z•e8cd791b24e7406724947b33245b18ff37c16dca5f5d32c7320f565d5b808f03
AI-generated-musicAisuruDDoSFBIHandalaIran-MOISJackSkidKimWolfMossadSection-702botnetdata-exposuredomain-seizurefraudlaw-enforcementleak-siteslegislationlocal-governmentpassword-resetransomwarestreaming-fraudtransit-securityunauthorized-access
What happened
Multiple security and cybercrime developments: Foster City reported a ransomware attack that may have exposed public information and urged residents to change passwords; Los Angeles Metro flagged ‘unauthorized activity.’ The DOJ seized domains/infrastructure linked to large DDoS botnets (Aisuru, KimWolf, JackSkid, Mossad). The FBI also took down leak sites tied to Iran’s Ministry of Intelligence and Security (MOIS), operating under aliases including “Handala.” Additional items: Rep. Darin LaHood discussed Section 702 reauthorization, and a defendant pleaded guilty to an $8M scheme inflating AI
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- e8cd791b24e7406724947b33245b18ff37c16dca5f5d32c7320f565d5b808f03
- Enrichment time
- 2026-03-21T02:51:56Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.