Determined Attacker Uploads Malicious Webshells to Parks and Rec Management Platform Servers

Huntress Version 1 original current

Imported from official source

Huntress SOC found a threat actor exploiting a file upload flaw in recreation management to breach 3 municipal servers and steal payment data.

This version

Version
1 of 1
Recorded
October 01, 2026 03:00
Change
Initial
Content hash
caf021afc6bde8cd368daaad8dcaaa65
All versions
Revision history

Officially records where a publication came from, not whether it is true. Imported records are reproduced from an organization's own official source.