logo

CISA: Medusa ransomware hit over 300 critical infrastructure orgs

ID: 8d101a8b-f341-5f4d-b669-a2a724b41d52

STIX ID: report--8d101a8b-f341-5f4d-b669-a2a724b41d52

Feed Name: Bleeping Computer

Threat Score
78/100

Date Published: 2025-03-12

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA, the FBI, and MS-ISAC issued a joint advisory warning that the Medusa ransomware operation has impacted over 300 organizations across critical U.S. infrastructure sectors as of early 2025, detailing its evolution into an affiliate RaaS model that leverages initial access brokers and public data-leak/ extortion sites; the advisory includes mitigation guidance such as timely patching, network segmentation, and blocking untrusted remote access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.