logo

Pennsylvania AG confirms data breach after INC Ransom attack

ID: 457d6c9d-831b-5318-9ae6-a7f9b09d49a4

STIX ID: report--457d6c9d-831b-5318-9ae6-a7f9b09d49a4

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2025-11-17

Date Updated: 2026-07-18

Author: Sergiu Gatlan

...
...

The Pennsylvania Office of the Attorney General was hit by a ransomware attack in August 2025 that disrupted its website, employee email, and phone systems; the INC Ransom gang claimed responsibility and alleged exfiltration of 5.7 TB of files including personal and medical records. Reporting notes public-facing Citrix NetScaler appliances vulnerable to CVE-2025-5777 (Citrix Bleed 2) as a potential entry point.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.