Medusa Ransomware Hits Providence Public School Department
Medusa Ransomware Attack on Providence Public School Department
The Providence Public School Department (PPSD), a significant urban school district in Providence, Rhode Island, has become the latest victim of a ransomware attack by the notorious Medusa group. The attackers claim to have exfiltrated 201.40 GB of sensitive data, including financial information, correspondence, and personally identifiable information (PII) of students and teachers. The ransom demand stands at $1,000,000, with a deadline set for September 25, 2024.
About Providence Public School Department
Established in 1977, PPSD serves approximately 21,700 students across 43 schools, including 21 elementary schools, seven middle schools, nine high schools, and two charter schools. The district employs around 3,600 professionals, including 1,895 teachers and 855 support staff. PPSD is recognized for its diverse student body, with significant representation from Latinx (69%) and Black (14%) communities. The district's commitment to inclusivity is evident, with around 40% of students being multilingual learners and 18% receiving special education services.
Attack Overview
The Medusa ransomware group has claimed responsibility for the attack on PPSD via their dark web leak site. The group has threatened to publish the stolen data within 8-9 days if their demands are not met. This attack has significant implications for the district, potentially exposing sensitive information of students and staff, and disrupting the educational services provided by PPSD.
About Medusa Ransomware Group
Medusa is a ransomware group that emerged in late 2022 and operates as a Ransomware-as-a-Service (RaaS) platform. The group has been involved in various high-profile attacks across multiple sectors globally. Medusa's ransomware is designed to kill numerous applications and services to prevent detection and mitigation, and it disables shadow copies to thwart recovery efforts. The group often demands substantial ransoms, with recent demands ranging from hundreds of thousands to millions of dollars.
Potential Vulnerabilities
Educational institutions like PPSD are often targeted by ransomware groups due to their extensive databases of sensitive information and sometimes limited cybersecurity resources. The attack on PPSD highlights the vulnerabilities in the education sector, where the need for advanced cybersecurity measures is critical to protect against such sophisticated threats.
Sources:
See Halcyon in action
Interested in getting a demo?
Fill out the form to meet with a Halcyon Anti-Ransomware Expert!