Image for Article: Lazarus Group Picks a New Poison: Medusa Ransomware

Article Details

Title
Article: Lazarus Group Picks a New Poison: Medusa Ransomware
Impact Score
5 / 10
AI Summary (Processed Content)

The North Korean Lazarus Group has adopted Medusa ransomware in a recent attack on a Middle East organization and attempted another on a US healthcare entity, demonstrating its continued focus on financially motivated cybercrime against critical infrastructure. The attacks also involved other malware like the Comebacker backdoor, Blindingcan RAT, and Infohook stealer. Researchers identified the activity as Lazarus's work but could not definitively pinpoint which specific sub-group within the threat actor was responsible. The main topics covered are Lazarus Group's new use of Medusa ransomware, its financially motivated attacks on critical infrastructure, and the associated malware and tactics.

Original URL
https://www.darkreading.com/cyberattacks-data-breaches/lazarus-group-new-position-medusa-ransomware
Source Feed
darkreading
Published Date
2026-02-24 21:18
Fetched Date
2026-03-04 13:41
Processed Date
2026-03-04 13:50
Embedding Status
Present
Cluster ID
Not Clustered
Raw Extracted Content