Ransom! Cariri

The Cariri Institute in Brazil experienced a ransomware attack by the threat actor Medusa, resulting in the leakage of 678.3 GB of data. This incident underscores the vulnerability of organizations in Brazil to sophisticated cyber threats. #Brazil

Incident Details

  • Victim: Cariri
  • Country: BR
  • Actor: medusa
  • Source: http://xfv4jzckytb4g3ckwemcny3ihv4i5p4lqzdpi624cxisu35my5fwi5qd.onion/detail?id=2686a61b4528f3ea244ba32bdf0b0a44
  • Discovered: 2025-09-13 18:06:29.618081
  • Published: 2025-09-11 21:29:03.000000

Information

  • The Medusa actor conducted a ransomware attack targeting Cariri in Brazil.
  • The institute was established in 1970 by the Government of Trinidad and Tobago with support from UNDP and UNIDO.
  • It was incorporated under Act of Parliament no. 19 of 1971, amended by Act no. 33 of 1981.
  • The instituteโ€™s initial mandate was to provide services to the Caribbean region, including laboratory-based analytical, engineering services, consultancy, training, and R&D.
  • The instituteโ€™s operations expanded in 2014 with the creation of the Centre for Enterprise Development (CED).
  • It offers a variety of technology-based support services, including laboratory testing at facilities in St Augustine and Macoya.
  • The institute provides Research, Entrepreneurship, Innovation, Development (REID), and ICT Consultancy Services through its Innovation Ecosystem at CED in Freeport.
  • The headquarters is located at The University of the West Indies St Augustine Campus, Trinidad and Tobago.
  • The institute employs 62 staff members.
  • The total data leaked in the ransomware attack amounts to 678.3 GB.

Disclaimer: This post is based on public claims made by the ransomware group "medusa". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live