Ransom! Imagicle

Medusa ransomware targeted Imagicle, a global provider of enterprise communication solutions headquartered in Italy, leading to a severe cybersecurity incident. The attack has impacted Italy.

Incident Details

  • Victim: Imagicle
  • Country: IT
  • Actor: medusa
  • Source: http://xfv4jzckytb4g3ckwemcny3ihv4i5p4lqzdpi624cxisu35my5fwi5qd.onion/detail?id=3b18e81d7260e19566d659c3a8f61ec9
  • Discovered: 2025-10-20 07:15:01.337709
  • Published: 2025-10-19 09:46:56.000000

Information

  • Imagicle was founded in 2010 and is headquartered in Italy with additional subsidiaries in Dubai and Miami.
  • The company serves a diverse customer base including enterprises, multinational corporations, family businesses, universities, government agencies, hospitals, and luxury hotels worldwide.
  • Imagicle is a Cisco Preferred Solution Partner and offers several Cisco-approved applications such as Advanced Directory Services, Attendant Console, Advanced Queueing and Auto Attendant, Call Accounting & Billing, IP Fax Server, and Hospitality Pack, all available globally through the Cisco Solutions Plus program.
  • The company’s main office is located at Via Fondacci 272, 55054 Massarosa (LU), Italy.
  • Imagicle employs 132 staff members.

Disclaimer: This post is based on public claims made by the ransomware group "medusa". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.

monitored by: ransomware.live