RansomHub's EDRKillShifter used in 2024 ransomware by Medusa, BianLian, and Play, revealing cross-gang tool sharing.
The Medusa ransomware relies on a malicious Windows driver to disable the security tools running on the infected systems.
Researchers spot Medusa ransomware operators deploying smuol.sys This driver mimics a legitimate CrowdStrike Falcon driver Medusa is actively targeting critical infrastructure organizations ...
The FBI and other federal authorities are warning healthcare organizations to safeguard against a ransomware group targeting the industry. The Medusa ransomware-as-a-service variant has been used to ...
ESET uncovers a link between RansomHub, Play, Medusa, and BianLian ransomware gangs as more groups adopt tools to disable EDR software.
The Canadian government has commenced cybersecurity training for immigrants, including Nigerians to enhance their skills with ...
Africa’s Banking, Financial Services, and Insurance (BFSI) sector is under siege from escalating cyber threats, with banks, ...