Wasabisys is described as a technology platform that threat actors are exploiting in conjunction with remote monitoring and management (RMM) tools to deploy ransomware.
Overview
Wasabisys is described as a technology platform that threat actors are exploiting in conjunction with remote monitoring and management (RMM) tools to deploy ransomware. The activity involves Medusa and DragonForce ransomware, illustrating how legitimate enterprise platforms can be abused to automate and scale ransomware campaigns, increasing risk to MSPs and organizational networks.
Related Threat Clusters
-
Medusa and DragonForce Ransomware Exploit RMM Tools in 2025 UK Attacks
In 2025, ransomware groups Medusa and DragonForce targeted UK organizations by exploiting three critical vulnerabilities in the SimpleHelp Remote Monitoring and Management platform. These vulnerabilities…
9 articles · Updated November 11, 2025 -
Ransomware Groups Medusa and DragonForce Exploit RMM Tools in 2025 Attacks
In 2025, ransomware groups Medusa and DragonForce targeted UK organizations by exploiting vulnerabilities in the SimpleHelp Remote Monitoring and Management platform. They leveraged three critical vulnerabilities…
3 articles · Updated November 11, 2025
Recent Intelligence Reports
- Threat Actors Leverage RMM Tools to Deploy Medusa & DragonForce Ransomware — Cybersecuritynews · November 11, 2025