ByEdmund Brumaghin, with contributions from Amit Raut.
MedusaLocker is a ransomware family that has been observed being deployed since itsdiscoveryin 2019. Since its introduction to the threat landscape, there have been several variants observed. However, most of the functionality remains consistent. The most notable differences are changes to the file extension used for encrypted files and the look and feel of the ransom note that is left on systems following the encryption process.
While most of MedusaLocker