FBI and CISA Warn Email Users of Medusa Ransomware Threat

March 16, 2025 The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) have issued an urgent advisory warning users of popular email services, including Gmail and Outlook, about the Medusa ransomware. Active since 2021, Medusa has compromised over 300 organizations across critical sectors such as healthcare, education, legal, insurance, technology, and manufacturing.

Medusa operates on a double extortion model: it encrypts victims’ data and threatens to publicly release it unless a ransom is paid. The group primarily gains access through phishing emails and exploiting unpatched software vulnerabilities. Notably, Medusa maintains a data-leak site listing victims with countdowns to data release, offering to delay the timer for a $10,000 cryptocurrency payment.

To mitigate the risk of ransomware attacks like Medusa, the FBI and CISA recommend the following measures:

  • Enable Multifactor Authentication (MFA): Implement MFA for all services, including email and Virtual Private Networks (VPNs), to add an extra layer of security.
  • Regularly Update Systems: Ensure operating systems, software, and firmware are up-to-date with the latest patches to close known vulnerabilities.
  • Maintain Secure Backups: Store copies of critical data in secure, segmented locations such as external hard drives or offline backups to facilitate recovery in case of an attack.

The FBI and CISA advise against paying ransoms, as payment does not guarantee the recovery of files and may encourage further criminal activity. Victims are urged to report ransomware incidents to the FBI or CISA promptly.

Top Stories

Related Articles

January 16, 2026 A newly uncovered malware framework suggests attackers are quietly preparing for a much deeper push into Linux more...

January 16, 2026 A massive trove of personal data belonging to thousands of U.S. immigration agents has reportedly been leaked more...

December 30, 2025 A fast-moving cyberattack has compromised more than 59,000 internet-facing Next.js servers in less than two days after more...

December 29, 2025 The U.S. National Institute of Standards and Technology (NIST) has warned that several of its Internet Time more...

Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com
Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn