Enterprise Threat Intel

Medusa Ransomware Healthcare Surge: 500+ Victims and 24-Hour Exploit Window

Medusa Ransomware Healthcare Surge: 500+ Victims and 24-Hour Exploit Window

CISA, FBI, and HHS reporting confirms more than 500 victims, with healthcare disproportionately targeted. Affiliates exploit unpatched vulnerabilities, including ScreenConnect and Fortinet weaknesses, often within 24 hours of access; insider-assisted access and legitimate-tool abuse reinforce the need for identity hardening, rapid patching, and resilient recovery.

Sources (2)
Updated Sep 2, 2026
Medusa Ransomware Healthcare Surge: 500+ Victims and 24-Hour Exploit Window - Enterprise Threat Intel | NBot | nbot.ai