← Back to Feed
New StormEncryptor ransomware used by former Medusa affiliate
August 10, 2026 · BleepingComputer · Severity: CRITICAL
A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. This development highlights the evolving tactics of cybercriminal groups. Organizations should be aware of this new threat and update their defenses accordingly.
Key Takeaways
- Former Medusa affiliate deploys new StormEncryptor ransomware strain.
- StormEncryptor is used by a financially motivated threat actor.
- This new ransomware indicates evolving tactics among cybercriminal groups.