Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
In April 2026, a manufacturing organization in the Middle East was targeted by a ransomware group (PAYLOAD) that weaponized Group Policy Objects (GPOs) to cause widespread disruption and extortion without deploying tradi…






