Skip to content
Storm-1175 Group Launches Rapid Medusa Ransomware Attacks

Storm-1175 Group Launches Rapid Medusa Ransomware Attacks

First seen 8 Apr 2026, 14:45 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster April 9, 2026 at 14:31 UTC
  • Storm-1175 is executing high-speed Medusa ransomware attacks within 24 hours of breach.
  • Healthcare and education sectors in the UK, US, and Australia are primary targets.
  • Microsoft warns of zero-day vulnerabilities being exploited without prior disclosure.

Microsoft has identified a new cybercriminal group, Storm-1175, responsible for swift Medusa ransomware attacks targeting the healthcare and education sectors in the UK, US, and Australia. The group exploits zero-day vulnerabilities, allowing them to transition from initial access to data exfiltration and ransomware deployment within 24 hours. This alarming efficiency has raised significant concerns among cybersecurity experts. The attacks leverage security flaws that have not yet been disclosed, indicating a high level of sophistication in their methods. Microsoft has reported multiple incidents where organizations were compromised and held for ransom in a matter of hours. The exact number of affected organizations remains unspecified, but the scope of impact is considerable given the critical nature of the targeted sectors. As of now, there are no known patches or mitigations available for the vulnerabilities being exploited. The situation is ongoing, with Microsoft urging organizations to bolster their defenses against potential breaches.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 155d ago How this analysis works

Timeline

2026-04-06
Microsoft reports on Medusa ransomware group effectiveness.
2026-04-08
Hackread publishes details on Storm-1175 attacks.

More articles in this cluster (8)

Following this threat?

Track Medusa and Education in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed