Close Menu
Alpha Leaders
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
What's On
‘Usually everybody loves money’: Trump’s FDA chief to start giving bonuses for faster drug reviews

‘Usually everybody loves money’: Trump’s FDA chief to start giving bonuses for faster drug reviews

5 March 2026
Mark Zuckerberg, Adam Mosseri’s words used against them in never-before-seen videos airing in addiction trial

Mark Zuckerberg, Adam Mosseri’s words used against them in never-before-seen videos airing in addiction trial

5 March 2026
Can Anthropic’s CFO sell Wall Street on an AI firm Washington calls a ‘risk’? 

Can Anthropic’s CFO sell Wall Street on an AI firm Washington calls a ‘risk’? 

5 March 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Alpha Leaders
newsletter
  • Home
  • News
  • Leadership
  • Entrepreneurs
  • Business
  • Living
  • Innovation
  • More
    • Money & Finance
    • Web Stories
    • Global
    • Press Release
Alpha Leaders
Home » FBI Warning—Gmail, Outlook And VPN Users Need To Act Now
Innovation

FBI Warning—Gmail, Outlook And VPN Users Need To Act Now

Press RoomBy Press Room15 March 20255 Mins Read
Facebook Twitter Copy Link Pinterest LinkedIn Tumblr Email WhatsApp
FBI Warning—Gmail, Outlook And VPN Users Need To Act Now

Update, March 15, 2025: This story, originally published March 13, has been updated with expert comment from infosecurity professionals following the warning of Medusa ransomware attacks and the urgent FBI mitigation advice.

The Federal Bureau of Investigation has recently warned of weird ransomware attack threats delivered by the United States Postal Service, yes really, alongside a dangerous ransowmare campaign from so-called Ghost attackers, and some of the most sophisticated threats against Gmail users ever. Having previously also advised users to use two-factor authentication to mitigate such attacks, a newly published FBI industry alert has rolled the mitigation advice into one as ongoing attacks by the Medusa ransomware gang continue. Enable 2FA for webmail services such as Gmail and Outlook, as well as for VPNs, the FBI has warned. And enable it now. Here’s what you need to know.

FBI And CISA Issue Medusa Ransomware Industry Joint Alert

Medusa, a highly dangerous ransomware-as-a-service provider, known to have impacted at least 300 victims from the critical infrastructure sector since the campaign was first observed in June 2021, is known to employ both social engineering and unpatched software vulnerability exploitation during attacks. FBI investigations as recently as February have enabled intelligence agencies to assemble a dossier of tactics, techniques, and procedures, indicators of compromise, and detection methods associated with the threat actors.

In partnership with the U.S. Cybersecurity and Infrastructure Security Agency, the FBI has issued a joint March 12 cybersecurity advisory against the backdrop of attacks by the Medusa ransomware group. The full FBI alert, AA25-071A, goes into great depth regarding the technicalities of the Medusa operation. As such, it is of importance that this should be read by all cyber-defenders. However, for the purposes of this article I am going to focus on the attack mitigation advice offered by the FBI.

Expert Insights Following FBI Warning About Medusa Ransomware Campaigns

Ransomware-as-a-service is alive and well. That’s the takeaway from the FBI warning. “Medusa is an apt name for this attack, considering its multi-faceted and far-reaching impacts on various industries,” Tim Morris, chief security advisor at Tanium, said. Medusa mature and effective at exploitation, persistence, lateral movement, and concealment, Morris continued, which makes it “crucial for organizations to manage their estates properly, know where their assets are, and ensure they have robust defense-in-depth mechanisms in place.”

“Ransomware operators like Medusa focus on gaining leverage to extort organizations, Jon Miller, CEO and co-founder of Halcyon, said, “making critical infrastructure entities prime targets due to their heightened motivation to maintain uninterrupted services.” These groups, Miller explained, exploit security gaps, leveraging vulnerabilities to move laterally, escalate privileges, exfiltrate sensitive data and ultimately deploy their payloads. “Once inside a network,” Miller continued, “Medusa employs sophisticated strategies to maximize impact.” Specifically, the group executes base64 encrypted commands via PowerShell to avoid detection and utilizes tools like Mimikatz to extract credentials from memory, facilitating further network compromise. “They also leverage legitimate remote access software,” Miller warned, “including AnyDesk and ConnectWise, as well as tools like PsExec and RDP, to propagate across the network.” Designed to inflict maximum operational disruption, Medusa can terminate over 200 Windows services and processes, including those related to security software, Miller concluded.

Mitigating Medusa—FBI Says Enable 2FA For Webmail And VPNs Now

When it comes to the immediate, as in right now, actions that all organizations should be taking in order to mitigate the Medusa ransomware attack campaigns, the FBI has recommended the following:

  • Require two-factor authentication for all services where possible, but in particular for webmail such as Gmail, Outlook and others, along with virtual private networks and any accounts that can access critical systems.
  • Require all accounts with password logins to use long passwords and consider not requiring frequently recurring password changes, as these can weaken security.
  • Retain multiple copies of sensitive or proprietary data and servers in a physically separate, segmented, and secure location.
  • Keep all operating systems, software, and firmware up to date. Prioritize patching known exploited vulnerabilities in internet-facing systems.
  • Identify, detect, and investigate abnormal activity and potential traversal of the indicated ransomware with a networking monitoring tool.
  • Monitor for unauthorized scanning and access attempts.
  • Filter network traffic by preventing unknown or untrusted origins from accessing remote services on internal systems.
  • Audit user accounts with administrative privileges and configure access controls according to the principle of least privilege.
  • Disable command-line and scripting activities and permissions.
  • Disable unused ports.Despite FBI And CISA Advice, The Hackers Must Be Laughing

Not everyone is happy with the advice that has been given by the FBI and CISA with regard to the Medusa ransomware group threat. Take Roger Grimes, a data-driven defence evangelist at KnowBe4, who said that it continues a long tradition of “warning people about ransomware that spreads using social engineering, that then does not suggest security awareness training as a primary way to defeat it.” Grimes said that, in the experience of KnowBe4, social engineering is involved in 70% – 90% of all successful hacking attacks. Yet, despite the official alert noting that social engineering is one of the primary methods of distributing the ransomware threats, awareness isn’t mentioned in the 15 recommended mitigations. “It’s like learning that criminals are breaking into your house all the time through the windows and then recommending more locks for the doors,” Grimes said. Warning that such a continued misalignment between the ways we are most often attacked by threat actors and their malware programs and how we are told to defend ourselves enables hackers to continue to be successful, Grimes concluded that “the hackers must be laughing.”

2FA FBI Medusa FBI Ransomware FBI Warning Gmail Medusa Medusa Ransomware outlook VPN Webmail
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link

Related Articles

When Claude Paused: An AI Doomsday Preview And The Question Of Human Survival

3 March 2026

Data Plateau: Hit The Scaling Wall With AI Or Remain An Innovator?

3 March 2026
New Leak Signals Unprecedented Design Change

New Leak Signals Unprecedented Design Change

1 March 2026
Is Tourism A Tool Or A Threat?

Is Tourism A Tool Or A Threat?

1 March 2026
Trust In The AI Age

Trust In The AI Age

1 March 2026
LEGO Pikachu And Poke Ball (72152) Review: Lacking A Spark

LEGO Pikachu And Poke Ball (72152) Review: Lacking A Spark

1 March 2026
Don't Miss
Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

Unwrap Christmas Sustainably: How To Handle Gifts You Don’t Want

By Press Room27 December 2024

Every year, millions of people unwrap Christmas gifts that they do not love, need, or…

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

Walmart dominated, while Target spiraled: the winners and losers of retail in 2024

30 December 2024
Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

Moltbook is the talk of Silicon Valley. But the furor is eerily reminiscent of a 2017 Facebook research experiment

6 February 2026
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Latest Articles
Pentagon commits 0M to a maritime tech VC fund, appears to be ramping up venture deals

Pentagon commits $150M to a maritime tech VC fund, appears to be ramping up venture deals

5 March 20260 Views
The housing paradox: why banning institutional investors could make affordability worse

The housing paradox: why banning institutional investors could make affordability worse

5 March 20261 Views
The Iran war is giving rise to a ‘mercantilism,’ a centuries-old economic theory

The Iran war is giving rise to a ‘mercantilism,’ a centuries-old economic theory

5 March 20261 Views
Leopold Aschenbrenner’s hedge fund is betting on power and bitcoin miners to fuel the AI boom

Leopold Aschenbrenner’s hedge fund is betting on power and bitcoin miners to fuel the AI boom

5 March 20261 Views
About Us
About Us

Alpha Leaders is your one-stop website for the latest Entrepreneurs and Leaders news and updates, follow us now to get the news that matters to you.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks
‘Usually everybody loves money’: Trump’s FDA chief to start giving bonuses for faster drug reviews

‘Usually everybody loves money’: Trump’s FDA chief to start giving bonuses for faster drug reviews

5 March 2026
Mark Zuckerberg, Adam Mosseri’s words used against them in never-before-seen videos airing in addiction trial

Mark Zuckerberg, Adam Mosseri’s words used against them in never-before-seen videos airing in addiction trial

5 March 2026
Can Anthropic’s CFO sell Wall Street on an AI firm Washington calls a ‘risk’? 

Can Anthropic’s CFO sell Wall Street on an AI firm Washington calls a ‘risk’? 

5 March 2026
Most Popular
Fed rate cuts: Iran war and jobs data lower odds of 2026 interest cut

Fed rate cuts: Iran war and jobs data lower odds of 2026 interest cut

5 March 20260 Views
Pentagon commits 0M to a maritime tech VC fund, appears to be ramping up venture deals

Pentagon commits $150M to a maritime tech VC fund, appears to be ramping up venture deals

5 March 20260 Views
The housing paradox: why banning institutional investors could make affordability worse

The housing paradox: why banning institutional investors could make affordability worse

5 March 20261 Views
© 2026 Alpha Leaders. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.