FBI, CISA Raise Alarms As Medusa Ransomware Attacks Grow
ID: 64eaa829-72fd-5580-9acb-507aaa7dd167
STIX ID: report--64eaa829-72fd-5580-9acb-507aaa7dd167
Feed Name: Dark Reading
Date Published: 2025-03-13
Date Updated: 2026-04-21
Author: Kristina Beek, Associate Editor, Dark Reading
CISA, FBI, and MS-ISAC issued a #StopRansomware advisory warning about Medusa, a RaaS active since 2021 that has affected over 300 victims across healthcare, education, law, insurance, technology, manufacturing and other sectors; Medusa operators and affiliates conduct double-extortion (data theft then encryption), demand ransoms from about $100,000 up to $15 million, leverage initial access brokers and living-off-the-land techniques, and the advisory recommends patching, network segmentation, blocking untrusted access, and adopting an assumed-breach posture.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
