Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Prosecuting Attorneys' Council of Georgia

Group: medusa

Discovered by ransomware.live: 2025-07-06

Estimated attack date: 2025-07-03

Country: US

Ransom: $ 500,000

Description:

The Prosecuting Attorneys' Council of Georgia (PAC) The Prosecuting Attorneys' Council of Georgia (PAC) is the overarching judicial branch government agency supporting Georgia prosecutors and their staff.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 1


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse pairdomains.com
MX Records
  • pacga-org.mail.protection.outlook.com.
TXT Records
  • yy9xtzt4gypfx7ktf8ln388pyx9c7j3k
  • MS=ms16768356
  • _7ylo16sjgxbfk8rkbl62odd6xokkqrg
  • duo_sso_verification=jiqhcCV0HWTNjdM14ihSywyioOVhTDSXOeUKcYsyEAJwUnHrsIKU5g0UYc8L5iq3
  • v=spf1 ip4:50.168.229.62 ip4:50.206.161.66 ip4:64.57.251.84 ip4:23.101.137.145 ip4:167.89.101.239 ip4:149.72.147.186 ip4:23.96.29.246 ip4:35.237.57.113 include:spf.protection.outlook.com ~all
Cloud / SaaS Services Detected
Microsoft 365 Cisco Duo

Leak Screenshot:

Leak Screenshot