Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
County Pays  Million to Prevent Data Leak, Reports Show

County Pays $1 Million to Prevent Data Leak, Reports Show

Posted on July 7, 2026 By CWS

A U.S. county government reportedly disbursed $1 million to the Kairos cyber extortion group to avert the public release of sensitive data stolen during a breach in May 2025, according to Ransom-ISAC.

Details of the Cyber Extortion

Negotiation transcripts reveal that the hackers initially demanded $3 million in cryptocurrency from the targeted entity. However, after discussions, they accepted a reduced amount of $1 million. The Kairos group claimed to have exfiltrated over 2 terabytes of data, equivalent to roughly 1.6 million files, following a brute-force attack on the county’s systems.

The negotiation process spanned three weeks, during which the county incrementally raised its offer from $100,000 to $430,000. Eventually, they conceded to a hard deadline, finalizing the $1 million payment in Bitcoin on June 13.

Impact and Response

The cyber attackers applied pressure by threatening to release the data publicly, while simultaneously managing deadlines and providing proof of their access. Ransom-ISAC commented that the county’s responses were typical of an organization attempting to buy time while coordinating legal, leadership, and financial strategies.

This incident was classified as an extortion attack rather than a typical ransomware scenario, as no file encryption was involved. The extortionists offered evidence of data deletion, which appeared selective and not comprehensive. Furthermore, there was no independent verification of the data erasure.

Identification and Notification

Though Ransom-ISAC did not disclose the identity of the impacted organization, the negotiation transcript identified it as “a small county with very limited resources.” The entity in question is believed to be Union County, Ohio. In September, the county informed 45,487 individuals that their personal data had been compromised during the May 2025 attack.

The compromised information included personal identifiers such as names, dates of birth, driver’s license numbers, Social Security numbers, financial account details, as well as medical and payment card information. SecurityWeek reached out to Union County for a comment but awaits a response.

Related incidents, such as the Aflac Japan data breach and the Oracle PeopleSoft hack impacting Nissan employees, highlight the growing threat of cyber extortion.

Security Week News Tags:Bitcoin ransom, cyber extortion, Cybersecurity, data breach, data protection, IT security, Kairos, Ransomware, Union County, US government

Post navigation

Previous Post: Critical Flaw in AI Platform Writer Poses Security Risks
Next Post: Enhancing AI SOC SLA: Transitioning from 2019 to 2026 Standards

Related Posts

DeFi Protocol Balancer Starts Recovering Funds Stolen in 8 Million Heist DeFi Protocol Balancer Starts Recovering Funds Stolen in $128 Million Heist Security Week News
Former US Soldier Who Hacked AT&T and Verizon Pleads Guilty Former US Soldier Who Hacked AT&T and Verizon Pleads Guilty Security Week News
QualDerm Data Breach Affects Over 3 Million Individuals QualDerm Data Breach Affects Over 3 Million Individuals Security Week News
SAP Patches Critical Flaws That Could Allow Remote Code Execution, Full System Takeover SAP Patches Critical Flaws That Could Allow Remote Code Execution, Full System Takeover Security Week News
US Cybersecurity Agency Flags Wi-Fi Range Extender Vulnerability Under Active Attack US Cybersecurity Agency Flags Wi-Fi Range Extender Vulnerability Under Active Attack Security Week News
Flaws in Gigabyte Firmware Allow Security Bypass, Backdoor Deployment Flaws in Gigabyte Firmware Allow Security Bypass, Backdoor Deployment Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • AppViewX Enhances AI Security with New Tools
  • Cyberattack Exposes Data of Over 1 Million in Arizona Courts
  • Criminal IP Unveils AITEM: Revolutionizing Cybersecurity
  • Iranian Hackers Exploit Fake Coding Test to Infiltrate Iraqi Systems
  • Aembit Enhances Security for AI Agents in Enterprises

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • October 2026
  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • AppViewX Enhances AI Security with New Tools
  • Cyberattack Exposes Data of Over 1 Million in Arizona Courts
  • Criminal IP Unveils AITEM: Revolutionizing Cybersecurity
  • Iranian Hackers Exploit Fake Coding Test to Infiltrate Iraqi Systems
  • Aembit Enhances Security for AI Agents in Enterprises

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark