← Back to Feed

New StormEncryptor ransomware used by former Medusa affiliate

August 10, 2026 · BleepingComputer · Severity: CRITICAL

A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. This development highlights the evolving tactics of cybercriminal groups. Organizations should be aware of this new threat and update their defenses accordingly.

Key Takeaways

  • Former Medusa affiliate deploys new StormEncryptor ransomware strain.
  • StormEncryptor is used by a financially motivated threat actor.
  • This new ransomware indicates evolving tactics among cybercriminal groups.
☕ Buy a Coffee