Redpacketsecurity Multiple Ransomware Attacks Target Major Organizations on September 18, 2026
Article Content
- •Accela.com reported a data theft of over 50 GB, including sensitive user data.
- •AT&T's breach involved unauthorized access through a contractor, affecting corporate systems.
- •ANYTHINGIT and Giti Corp were listed by ransomware groups without detailed information.
On September 18, 2026, the ransomware group EndZone claimed to have compromised Accela.com, a cloud-based software provider for government agencies, alleging the theft of over 50 GB of sensitive data, including personally identifiable information (PII). Concurrently, AT&T was reported to have suffered a breach through a contractor, with attackers accessing virtual desktop and VPN environments, but no specific data exfiltration details were provided. Additionally, the Spirals group listed ANYTHINGIT, a technology firm, without details on the nature of the attack or data involved. Lastly, Giti Corp, a manufacturing company, was also listed by the KILLSEC group, but no specifics were provided regarding the attack or data compromised. All incidents were reported on the same day, raising concerns about a coordinated effort against high-profile targets.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track EndZone and Anythingit in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…