Here are four things to know about MedusaLocker, according to a Feb. 24 breach notification from the HHS:
- MedusaLocker was detected in September 2019.
- The group has targeted encrypted servers from multiple sectors, but is known for targeting healthcare organizations.
- MedusaLockers operates as a ransomware-as-a-service group.
- MedusaLocker is using a campaign that is known to target software vulnerabilities for unsecured remote desktop protocol servers and desktops.