Medusa Ransomware Group Strikes Radiosurgery New York, Data Breach Detected

Incident Date: Jun 06, 2024

Attack Overview
VICTIM
Radiosurgery New York
INDUSTRY
Hospitals & Physicians Clinics
LOCATION
USA
ATTACKER
Medusa
FIRST REPORTED
June 6, 2024

Medusa Ransomware Group Targets Radiosurgery New York

Overview of Radiosurgery New York

Radiosurgery New York (RSNY) is a prominent medical practice specializing in non-invasive fractionated stereotactic radiosurgery treatments for cancer patients. Founded by Dr. Gil Lederman, RSNY is renowned for its advanced radiation therapy techniques, including the use of Gamma Knife and CyberKnife systems. The center, located at 1384 Broadway, New York City, employs between 51-200 individuals and focuses on treating various cancers, including brain, lung, breast, and prostate cancers. RSNY's approach allows for outpatient treatment, significantly reducing hospital stays and promoting quicker recovery times.

Details of the Ransomware Attack

Recently, the Medusa ransomware group executed a cyberattack on RSNY, resulting in the exfiltration of 64.7 GB of sensitive data. The attack was publicly claimed on Medusa's dark web leak site. The breach has raised significant concerns about the security of patient data and the operational integrity of RSNY's advanced treatment systems.

About the Medusa Ransomware Group

Medusa is a notorious ransomware group that emerged in late 2022, operating as a Ransomware-as-a-Service (RaaS) platform. The group has been involved in high-profile attacks across various sectors, including education, healthcare, and government services. Medusa's ransomware is designed to disable numerous applications and services, making detection and mitigation challenging. The group is known for demanding substantial ransoms and publicly releasing stolen data if their demands are not met.

Potential Vulnerabilities and Attack Penetration

Given RSNY's reliance on advanced technology and extensive patient data, it becomes a lucrative target for ransomware groups like Medusa. The attack could have penetrated RSNY's systems through various vectors, including phishing emails, exploiting unpatched software vulnerabilities, or leveraging weak network security protocols. The healthcare sector's critical nature and the high value of patient data further exacerbate the impact of such attacks.

Implications and Response

Importantly, the attack on RSNY underscores the growing threat of ransomware in the healthcare sector. The breach not only compromises patient confidentiality but also disrupts critical medical services. RSNY is likely to face significant operational challenges and reputational damage as it navigates the aftermath of this cyberattack.

Sources:

See Halcyon in action

Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!

1
2
3
Let's get started
1
1
2
3
1
1
2
2
3
Back
Next
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.