logo

33,000 Records, One Drive Full of Forgotten Data, and a Ransomware Gang Called Medusa

ID: e3a78e4d-ac2a-5500-aa61-c04fc31a9bc2

STIX ID: report--e3a78e4d-ac2a-5500-aa61-c04fc31a9bc2

Feed Name: NoHackie

Threat Score
75/100

Date Published: 2026-03-02

Date Updated: 2026-04-19

...
...

Clackamas Community College experienced a Medusa ransomware/data-exfiltration incident in October 2025 that resulted in theft of ~1.2 TB of files and the exposure of 33,381 individuals' sensitive records (SSNs, passport numbers, medical and financial data); the report analyzes the timeline, Medusa's RaaS double-extortion model and techniques (credential compromise, rclone/exfiltration, BYOVD, common RMM and enumeration tools), the institutional factors (legacy systems, weak governance, budget gaps) that enabled the breach, and the legal and remediation consequences including a follow-on class-action suit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.