More than 200 victims of Medusa ransomware identified over the last year, CISA says
2026-08-18T20:51:48Z•4e0fcd34da336ec781a4a40221d5b0874b62d3ba6112183d9ff2c3b80aa65956
GermanyMedusa ransomwareStadler RailUkraineUnited Statescritical infrastructurecyberattackextortiongovernmenthigher educationincident responselaw enforcementransomware
What happened
The document reports multiple significant cybersecurity incidents and developments, including a CISA and FBI update that Medusa ransomware actors have affected more than 500 victims, attacks against German and Ukrainian government entities, a cyberattack that forced the University of Texas at San Antonio to take systems offline, and legal proceedings against a Ukrainian developer accused of involvement in an international ransomware operation targeting Stadler Rail and other organizations.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- therecord_media
- Record identifier
- 4e0fcd34da336ec781a4a40221d5b0874b62d3ba6112183d9ff2c3b80aa65956
- Enrichment time
- 2026-08-18T20:51:48Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.