Bleepingcomputer
Medusa and DragonForce Ransomware Exploit RMM Tools in 2025 UK Attacks
First seen 30 Nov 2025, 12:41 UTC
•



+1
•52.4
Export
Article Content
Browse articles
In 2025, ransomware groups Medusa and DragonForce targeted UK organizations by exploiting three critical vulnerabilities in the SimpleHelp Remote Monitoring and Management platform. These vulnerabilities (CVE-2024-57726, CVE-2024-57727, CVE-2024-57728) allowed unauthorized access through trusted third-party vendors and Managed Service Providers.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Massive Data Breach at Change Healthcare Affects 190 Million Americans
Operation Endgame Disrupts Evil Corp's SocGholish Malware Network
Global Law Enforcement Dismantles AudiA6 Crypto Laundering Network
The Gentlemen Ransomware Group Expands Operations with New Tools
Ransomware Tactics Evolve: EDR Killers Expand Beyond Vulnerable Drivers
Aflac Japan Data Breach Affects 4.38 Million Customers