The Medusa ransomware has emerged as a significant threat in 2025, targeting over 40 organizations and demanding ransoms ranging from $100,000 to $15 million. Since January 2023, the ransomware has affected more than 400 victims, with a reported 42% increase in attacks from 2023 to 2024. Cybersecurity experts indicate that vulnerabilities in Microsoft Exchange have been a common entry point for these attacks. Additionally, EncryptHub, a malware threat actor, has compromised over 600 organizations, with its operations and attack methods recently exposed by researchers. In a related incident, a data breach at Japanese telecom giant NTT has resulted in the exposure of details from nearly 18,000 companies. Furthermore, the ongoing campaign has infiltrated the Go ecosystem with typosquatted packages that install hidden loader malware, primarily targeting Linux and macOS systems in the financial sector.
An ongoing campaign has infiltrated the Go ecosystem with at least seven typosquatted packages that install hidden loader malware that primarily target Linux and macOS systems in the financial sector, according to @SocketSecurity. #cybersecurity #infosec https://t.co/EyLY9wcVOt
Japanese telco giant NTT Com says hackers accessed details of almost 18,000 organizations: https://t.co/eyA7dXhTQw by TechCrunch #infosec #cybersecurity #technology #news
EncryptHub, an emerging malware threat actor that has compromised more than 600 organizations, had details about its operations and attack chain exposed by researchers with @outpost24's KrakenLabs. #cyberscurity #infosec #ITsecurity https://t.co/jcWW4qNeKq