More than 200 victims of Medusa ransomware identified over the last year, CISA says

2026-08-19T02:51:49Zc73d2d34ca2d1122f1aef877918ce53ba323206351aa7c2f5062b5b4a9d4e1e5
CISAFBIMedusaStadler RailSwitzerlandUkrainecritical infrastructurecyberattackgovernmenthigher educationincident responsenetwork isolationransomwaresanctions

What happened

Security news digest covering a CISA/FBI update that Medusa ransomware actors have impacted more than 500 victims, including critical-infrastructure organizations; network isolation following breaches at two Berlin state ministries and the University of Texas at San Antonio; a cyberattack against Ukraine’s agency managing assets seized from sanctioned Russian entities; and a Swiss ransomware prosecution involving attacks on Stadler Rail and other organizations.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
therecord_media
Record identifier
c73d2d34ca2d1122f1aef877918ce53ba323206351aa7c2f5062b5b4a9d4e1e5
Enrichment time
2026-08-19T02:51:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.