cognitive cybersecurity intelligence

News and Analysis

Search

Researchers Deanonymized Medusa Ransomware Group’s Onion Site

Researchers Deanonymized Medusa Ransomware Group’s Onion Site

Researchers have identified servers of the Medusa Ransomware Group, revealing their IP address through a vulnerability in their blog platform. Active since 2019, Medusa has targeted healthcare, education, and manufacturing sectors, employing double-extortion tactics. The compromised server, hosted in Russia, displayed poor security configurations, leading to its deanonymization despite operating within Tor’s protections.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts