[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fS6SNyCyyhTNmz8Pig-XarnLjbSZ8D4DxsGAXYdMcn6Q":3},{"article":4,"iocs":49,"watch_terms":53},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":24,"category":25,"article_tags":28},"eb588d29-4050-4002-9809-7fed6a710c59","Storm-1175 Deploys Medusa Ransomware at 'High Velocity'","storm-1175-deploys-medusa-ransomware-at-high-velocity","Microsoft says the financially motivated cybercrime group has exploited N-day and zero-day vulnerabilities in campaigns predicated on speed.","Microsoft has identified Storm-1175, a financially motivated cybercrime group, as the operator behind rapid Medusa ransomware deployments leveraging both known (N-day) and previously unknown (zero-day) vulnerabilities. The group's campaigns emphasize speed and exploitation velocity to maximize impact before defenses can respond. The threat represents a significant shift toward aggressive, vulnerability-driven ransomware tactics.","Microsoft attributes Medusa ransomware deployments to Storm-1175 exploiting N-day and zero-day vulnerabilities.",null,"https:\u002F\u002Fwww.darkreading.com\u002Fthreat-intelligence\u002Fstorm-1175-medusa-ransomware-high-velocity","https:\u002F\u002Feu-images.contentstack.com\u002Fv3\u002Fassets\u002Fblt6d90778a997de1cd\u002Fblt4758c90a86b6e8ad\u002F69d55d246ef500ddf73c9699\u002Fmedusa_CarloBollo_Alamy.jpg?width=1280&auto=webp&quality=80&disable=upscale","2026-04-07T20:15:07+00:00","2026-04-07T22:00:21.189742+00:00",8,[18,21],{"name":19,"type":20},"Storm-1175","threat_actor",{"name":22,"type":23},"Microsoft","vendor","7d8b5ab8-ea0b-4ced-ae97-ec251b86993a",{"id":24,"icon":11,"name":26,"slug":27},"Ransomware","ransomware",[29,34,39,44],{"category":30},{"id":31,"icon":11,"name":32,"slug":33},"574f766a-fb3f-487c-8d2c-0720ae75471b","Zero-day","zero-day",{"category":35},{"id":36,"icon":11,"name":37,"slug":38},"6cbdd207-aaa1-4176-9534-e156b125e917","Nation-state","nation-state",{"category":40},{"id":41,"icon":11,"name":42,"slug":43},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":45},{"id":46,"icon":11,"name":47,"slug":48},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[50],{"type":43,"value":51,"context":52},"Medusa","Ransomware deployed by Storm-1175 in high-velocity campaigns",[22]]