CISA, HHS, and the FBI warned that the Medusa ransomware gang has compromised more than 500 U.S. critical infrastructure organizations since June 2021, affecting sectors such as healthcare, defense, manufacturing, government, IT, and financial services. The agencies urged defenders to patch vulnerabilities, segment networks, and restrict untrusted access to internal remote services to reduce the risk of Medusa attacks. #Medusa #CISA #HHS #FBI
Keypoints
- Medusa has breached more than 500 critical infrastructure organizations in the United States.
- The joint advisory was issued by CISA, HHS, and the FBI.
- Affected sectors include healthcare, defense industrial base, manufacturing, government, IT, and financial services.
- Medusa became more active in 2023 after launching its leak site and using stolen data for extortion.
- Defenders are advised to patch vulnerabilities, segment networks, and block untrusted remote access.