Breaking news

FBI cybersecurity alert: How to protect Gmail, Outlook, and VPNs from Medusa ransomware

The FBI has issued an urgent warning for Gmail, Outlook, and VPN users to enable two-factor authentication (2FA) to protect against the ongoing Medusa ransomware attacks. Learn how to safeguard your systems from cyber threats.

Medusa ransomware, a ransomware-as-a-service (RaaS) operation, has been wreaking havoc since it was first discovered in 2021. Photo: Kapersky
Medusa ransomware, a ransomware-as-a-service (RaaS) operation, has been wreaking havoc since it was first discovered in 2021. Photo: Kapersky

The Federal Bureau of Investigation (FBI) has issued a critical cybersecurity warning to all users of Gmail, Outlook, and Virtual Private Networks (VPNs). This warning comes as part of a broader effort to combat the ongoing Medusa ransomware campaign, which continues to pose a significant threat to individuals and organizations alike. The FBI is urging users to take immediate action by enabling two-factor authentication (2FA) across all webmail and VPN services.

What is Medusa ransomware, and why should you care?

Medusa ransomware, a ransomware-as-a-service (RaaS) operation, has been wreaking havoc since it was first discovered in 2021. This sophisticated malware targets critical infrastructure and utilizes both social engineering techniques and exploits of unpatched software vulnerabilities to spread. Medusa's impact has been widespread, with more than 300 known victims, including high-profile organizations in various sectors.

The ransomware’s encrypted payload, which employs AES-256 encryption and RSA public key cryptography, locks files, making recovery without a decryption key almost impossible. Furthermore, the attackers implement various tactics to ensure that recovery efforts fail, including disabling backup systems and deleting shadow copies.

FBI’s urgent warning: Enable 2FA for Gmail, Outlook, and VPN Accounts

To mitigate the risk of falling victim to Medusa ransomware, the FBI has emphasized the importance of enabling two-factor authentication (2FA) for all services where possible, particularly Gmail, Outlook, and VPN accounts. This additional layer of security will help protect users from unauthorized access, especially as the Medusa group targets accounts with weak or compromised passwords.

 The FBI warning comes as part of a broader effort to combat the ongoing Medusa ransomware campaign, which continues to pose a significant threat to individuals and organizations alike. Photo: Forbes

The FBI warning comes as part of a broader effort to combat the ongoing Medusa ransomware campaign, which continues to pose a significant threat to individuals and organizations alike. Photo: Forbes

In addition to enabling 2FA, the FBI has shared a list of other key recommendations to protect sensitive data:

  1. Use Strong, Unique Passwords: Ensure that all accounts with password logins use long, complex passwords. Avoid using easily guessable or repetitive passwords.
  2. Update Software Regularly: Keeping operating systems, software, and firmware up to date is critical. Patching known vulnerabilities, especially in internet-facing systems, can prevent exploitation by ransomware actors.
  3. Segment and Secure Data: Store sensitive data in multiple locations, ensuring that it is physically separate and securely segmented to prevent unauthorized access.
  4. Monitor Network Activity: Use network monitoring tools to detect abnormal behavior and potential threats. Unauthorized scanning and access attempts should be promptly addressed.
  5. Enforce Access Controls: Apply the principle of least privilege when granting user access, and audit accounts with administrative privileges regularly.
  6. Disable Unused Ports and Scripting Activities: Disable unnecessary services, ports, and script permissions to limit potential entry points for cyber attackers.

Do not click on suspicious links

Despite the technical recommendations, experts also highlight the importance of recognizing social engineering tactics, which are a significant part of Medusa's attack strategy. Attackers often trick users into clicking on malicious links or downloading infected files, which can lead to widespread system compromise. Experts urge organizations and individuals to be vigilant and undergo security awareness training to reduce the effectiveness of these attacks.

The importance of not paying ransoms

As Medusa ransomware continues to target critical infrastructure and businesses, experts agree on one point: do not pay the ransom. Paying ransom demands does not guarantee that files will be decrypted or that systems will return to normal. According to recent studies, around 35% of victims who paid the ransom either did not receive decryption keys or received corrupted versions. The FBI and other cybersecurity agencies recommend focusing on prevention and recovery instead of capitulating to the demands of cybercriminals.

The most recent

Where to watch UEFA Champions League Final this Saturday?

Where to watch UEFA Champions League Final this Saturday?

May 30 2025 | 3:09 h

South African Mother receives life sentence for trafficking Daughter Joshlin, Who remains missing

South African Mother receives life sentence for trafficking Daughter Joshlin, Who remains missing

May 30 2025 | 3:01 h

Transgender Woman Jaia Cruz receives 15 year sentence for murder of Ray Hodges

Transgender Woman Jaia Cruz receives 15 year sentence for murder of Ray Hodges

May 30 2025 | 3:00 h

How to watch PSG vs. Inter Milan in the 2025 UEFA Champions League Final in the U.S.

How to watch PSG vs. Inter Milan in the 2025 UEFA Champions League Final in the U.S.

May 30 2025 | 2:59 h

ICE raids will amid immigrant children on schools and homes

ICE raids will amid immigrant children on schools and homes

May 30 2025 | 2:32 h

Air Force Cadet's death: Illegal Immigrants had bags packed before arrest

Air Force Cadet's death: Illegal Immigrants had bags packed before arrest

May 30 2025 | 1:59 h

Israel accepts U.S. ceasefire proposal; Hamas still reviewing terms

Israel accepts U.S. ceasefire proposal; Hamas still reviewing terms

May 30 2025 | 1:58 h

Shakira and more cancel Boston Fenway concerts

Shakira and more cancel Boston Fenway concerts

May 30 2025 | 1:57 h

Man charged after car plows into Liverpool Parade crowd, Injuring 79

Man charged after car plows into Liverpool Parade crowd, Injuring 79

May 30 2025 | 1:57 h

Judge blocks Trump Ban on foreign students at Harvard

Judge blocks Trump Ban on foreign students at Harvard

May 30 2025 | 1:55 h

George R.R. Martin about Game of Thrones unfinished books: "Some of You Will Be Pissed by This"

George R.R. Martin about Game of Thrones unfinished books: "Some of You Will Be Pissed by This"

May 30 2025 | 1:04 h

Market Basket CEO is suspended: How it would affect the supermarket?

Market Basket CEO is suspended: How it would affect the supermarket?

May 30 2025 | 0:22 h