{"id":77730,"date":"2025-03-24T03:23:26","date_gmt":"2025-03-24T07:23:26","guid":{"rendered":"https:\/\/blog.cyberconservices.com\/?p=77730"},"modified":"2025-03-22T17:28:36","modified_gmt":"2025-03-22T21:28:36","slug":"cybersecurity-officials-warn-against-potential-ransomware-attacks-involving-email-vpns","status":"publish","type":"post","link":"https:\/\/blog.cyberconservices.com\/index.php\/2025\/03\/24\/cybersecurity-officials-warn-against-potential-ransomware-attacks-involving-email-vpns\/","title":{"rendered":"Cybersecurity officials warn against potential\u00a0ransomware\u00a0attacks involving email, VPNs"},"content":{"rendered":"<p>By\u00a0<a class=\"Link\" href=\"https:\/\/www.wusf.org\/people\/associated-press\" aria-label=\"Associated Press\" data-cms-ai=\"0\">Associated Press<\/a> &#8211; The FBI and the U.S. Cybersecurity and Infrastructure Security Agency are warning against a dangerous ransomware scheme.<\/p>\n<p>In an advisory posted last week, government officials warned that a ransomware-as-a-service software called Medusa, which has launched ransomware attacks since 2021, has recently affected hundreds of people. Medusa uses phishing campaigns as its main method for stealing victims\u2019 credentials, according to CISA.<\/p>\n<p>To protect against the ransomware, officials recommended patching operating systems, software and firmware, in addition to using multifactor authentication for all services such as email and VPNs. Experts also recommended using long passwords and warned against frequently recurring password changes because they can weaken security.<\/p>\n<p>Medusa developers and affiliates \u2014 called \u201cMedusa actors\u201d \u2014 use a double extortion model, where they \u201cencrypt victim data and threaten to publicly release exfiltrated data if a ransom is not paid,\u201d the advisory said. Medusa operates a data-leak site that shows victims alongside countdowns to the release of information. \u00a0<a title=\"https:\/\/www.google.com\/url?rct=j&amp;sa=t&amp;url=https:\/\/www.wusf.org\/courts-law\/2025-03-17\/cybersecurity-officials-warn-against-potential-ransomware-attacks-involving-email-vpns&amp;ct=ga&amp;cd=CAEYACoTODc0Mjg4MTMxMzg0NTM0ODgyNjIaZjk1ZDdkNTc3NTkyZGUyMTpjb206ZW46VVM&amp;usg=AOvVaw0YAX7ZeVhnvKOWVI4mTP7x\" href=\"https:\/\/www.google.com\/url?rct=j&amp;sa=t&amp;url=https:\/\/www.wusf.org\/courts-law\/2025-03-17\/cybersecurity-officials-warn-against-potential-ransomware-attacks-involving-email-vpns&amp;ct=ga&amp;cd=CAEYACoTODc0Mjg4MTMxMzg0NTM0ODgyNjIaZjk1ZDdkNTc3NTkyZGUyMTpjb206ZW46VVM&amp;usg=AOvVaw0YAX7ZeVhnvKOWVI4mTP7x\" data-auth=\"NotApplicable\" data-linkindex=\"1\" data-ogsc=\"rgb(66, 127, 237)\"><span data-ogsc=\"\">Read On:<\/span><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A ransomware-as-a-service software called Medusa, which has launched ransomware attacks since 2021, has recently affected hundreds of people.<\/p>\n <a class=\"more-link\" href=\"https:\/\/blog.cyberconservices.com\/index.php\/2025\/03\/24\/cybersecurity-officials-warn-against-potential-ransomware-attacks-involving-email-vpns\/\"><span class=\"more-msg\">Continue reading &rarr;<\/span><\/a>","protected":false},"author":1,"featured_media":77731,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"jetpack_seo_schema_type":"","_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2},"jetpack_post_was_ever_published":false},"categories":[636],"tags":[637],"class_list":["post-77730","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ransomware","tag-ransomware"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2025\/03\/cyber-security-3194286_1280.jpg?fit=1280%2C768&ssl=1","jetpack-related-posts":[{"id":46525,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2022\/03\/08\/senate-passes-major-cybersecurity-legislation-to-force-reporting-of-cyberattacks\/","url_meta":{"origin":77730,"position":0},"title":"Senate passes major cybersecurity legislation to force reporting of cyberattacks","author":"Rick Backus","date":"March 8, 2022","format":false,"excerpt":"By\u00a0Geneva Sands - The Senate on Tuesday passed major cybersecurity legation, moving one step closer toward forcing critical infrastructure companies to report cyberattacks and ransomware payments. The passage comes as federal officials have\u00a0repeatedly warned\u00a0of the potential for Russian cyberattacks against the United States amid the escalating conflict in Ukraine. The\u2026","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":77489,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2024\/09\/30\/warnings-after-new-valencia-ransomware-group-strikes-businesses-and-leaks-data\/","url_meta":{"origin":77730,"position":1},"title":"Warnings After New Valencia Ransomware Group Strikes Businesses and Leaks Data","author":"Rick Backus","date":"September 30, 2024","format":false,"excerpt":"A new ransomware operation has started to leak information it claims has been stolen from organisations it has compromised around the world.","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2024\/09\/valencia.jpg?fit=1200%2C628&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2024\/09\/valencia.jpg?fit=1200%2C628&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2024\/09\/valencia.jpg?fit=1200%2C628&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2024\/09\/valencia.jpg?fit=1200%2C628&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2024\/09\/valencia.jpg?fit=1200%2C628&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":49819,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2022\/09\/13\/feds-anticipate-ransomware-attacks-against-schools-could-increase-as-new-year-begins\/","url_meta":{"origin":77730,"position":2},"title":"Feds anticipate ransomware attacks against schools could increase as new year begins","author":"Rick Backus","date":"September 13, 2022","format":false,"excerpt":"The FBI and the Cybersecurity and Infrastructure Security Agency (CISA) said in a new warning they anticipate ransomware attacks could increase as the new school year begins. \"The FBI, CISA, and the MS-ISAC anticipate attacks may increase as the 2022\/2023 school year begins and criminal ransomware groups perceive opportunities for\u2026","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"","width":0,"height":0},"classes":[]},{"id":76715,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2023\/04\/17\/microsoft-turns-to-court-order-to-take-down-ransomware-hacking-tool-that-targeted-hospitals\/","url_meta":{"origin":77730,"position":3},"title":"Microsoft turns to court order to take down ransomware hacking tool that targeted hospitals","author":"Rick Backus","date":"April 17, 2023","format":false,"excerpt":"BY NICOLE SGANGA - Microsoft and a group of cybersecurity firms received help from the courts with the massive takedown Thursday of a notorious hacking tool that had been co-opted by cybercriminals to target hospitals and healthcare systems. Joining forces with cybersecurity firm Fortra and the Health Information Sharing and\u2026","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/04\/hospital-ward-1338585_1920-1.jpg?fit=1200%2C800&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/04\/hospital-ward-1338585_1920-1.jpg?fit=1200%2C800&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/04\/hospital-ward-1338585_1920-1.jpg?fit=1200%2C800&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/04\/hospital-ward-1338585_1920-1.jpg?fit=1200%2C800&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/04\/hospital-ward-1338585_1920-1.jpg?fit=1200%2C800&ssl=1&resize=1050%2C600 3x"},"classes":[]},{"id":44419,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2020\/11\/30\/how-ransomware-defense-is-evolving-with-ransomware-attacks\/","url_meta":{"origin":77730,"position":4},"title":"How Ransomware Defense is Evolving With Ransomware Attacks","author":"Rick Backus","date":"November 30, 2020","format":false,"excerpt":"Ransomware became deadly in 2020. Healthcare facilities were attacked at an alarming rate, including one incident\u00a0in Germany\u00a0that lead to a patient death when an attack locked critical systems and a woman needing critical care was turned away. She died after she had to be taken to another city for treatment.\u00a0\u2026","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/cdn.pixabay.com\/photo\/2017\/06\/19\/06\/56\/arrow-2418321__340.jpg?resize=350%2C200&ssl=1","width":350,"height":200},"classes":[]},{"id":76218,"url":"https:\/\/blog.cyberconservices.com\/index.php\/2023\/02\/27\/76218\/","url_meta":{"origin":77730,"position":5},"title":"An Overview of the Global Impact of Ransomware Attacks","author":"Rick Backus","date":"February 27, 2023","format":false,"excerpt":"On December 12th, 2022, there was a\u00a0cyberattack\u00a0in the Swedish municipalities of Borgholm and M\u00f6rbyl\u00e5nga that rendered a range of critical services from both municipalities unavailable. Although the nature of the intrusion is still undisclosed, it seems to be part of a wider trend of global ransomware attacks. On January 10th,\u2026","rel":"","context":"In &quot;Ransomware&quot;","block_context":{"text":"Ransomware","link":"https:\/\/blog.cyberconservices.com\/index.php\/category\/ransomware\/"},"img":{"alt_text":"","src":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/03\/viking-4898879_1920-1536x1152-1-1.jpg?fit=1200%2C900&ssl=1&resize=350%2C200","width":350,"height":200,"srcset":"https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/03\/viking-4898879_1920-1536x1152-1-1.jpg?fit=1200%2C900&ssl=1&resize=350%2C200 1x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/03\/viking-4898879_1920-1536x1152-1-1.jpg?fit=1200%2C900&ssl=1&resize=525%2C300 1.5x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/03\/viking-4898879_1920-1536x1152-1-1.jpg?fit=1200%2C900&ssl=1&resize=700%2C400 2x, https:\/\/i0.wp.com\/blog.cyberconservices.com\/wp-content\/uploads\/2023\/03\/viking-4898879_1920-1536x1152-1-1.jpg?fit=1200%2C900&ssl=1&resize=1050%2C600 3x"},"classes":[]}],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/77730","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/comments?post=77730"}],"version-history":[{"count":1,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/77730\/revisions"}],"predecessor-version":[{"id":77732,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/posts\/77730\/revisions\/77732"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/media\/77731"}],"wp:attachment":[{"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/media?parent=77730"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/categories?post=77730"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.cyberconservices.com\/index.php\/wp-json\/wp\/v2\/tags?post=77730"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}