FBI and CISA Warn Email Users of Medusa Ransomware Threat

March 16, 2025 The Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) have issued an urgent advisory warning users of popular email services, including Gmail and Outlook, about the Medusa ransomware. Active since 2021, Medusa has compromised over 300 organizations across critical sectors such as healthcare, education, legal, insurance, technology, and manufacturing.

Medusa operates on a double extortion model: it encrypts victims’ data and threatens to publicly release it unless a ransom is paid. The group primarily gains access through phishing emails and exploiting unpatched software vulnerabilities. Notably, Medusa maintains a data-leak site listing victims with countdowns to data release, offering to delay the timer for a $10,000 cryptocurrency payment.

To mitigate the risk of ransomware attacks like Medusa, the FBI and CISA recommend the following measures:

  • Enable Multifactor Authentication (MFA): Implement MFA for all services, including email and Virtual Private Networks (VPNs), to add an extra layer of security.
  • Regularly Update Systems: Ensure operating systems, software, and firmware are up-to-date with the latest patches to close known vulnerabilities.
  • Maintain Secure Backups: Store copies of critical data in secure, segmented locations such as external hard drives or offline backups to facilitate recovery in case of an attack.

The FBI and CISA advise against paying ransoms, as payment does not guarantee the recovery of files and may encourage further criminal activity. Victims are urged to report ransomware incidents to the FBI or CISA promptly.

Top Stories

Related Articles

April 1, 2026 Anthropic has inadvertently exposed the full source code of its Claude Code tool for the second time more...

April 1, 2026 Cisco suffered a cyberattack after attackers used stolen credentials from a compromised developer tool to access its more...

March 30, 2026 Google has expanded its “Results about you” tool, allowing users to remove highly sensitive personal data, including more...

March 27, 2026 Microsoft is updating GitHub Copilot to train on real-world developer interactions, expanding beyond public code datasets to more...

Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com
Picture of Jim Love

Jim Love

Jim Love's career in technology spans more that four decades. He's been a CIO and headed a world wide Management Consulting practice. As an entrepreneur he built his own tech business. Today he is a podcast host with the popular tech podcasts Hashtag Trending and Cybersecurity Today with over 14 million downloads. As a novelist, his latest book "Elisa: A Tale of Quantum Kisses" is an Audible best seller. In addition, Jim is a songwriter and recording artist with a Juno nomination and a gold album to his credit. His music can be found at music.jimlove.com

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn