Ransomware
University of Mississippi Medical Center Medusa Ransomware Attack
Primary Source βIncident Details
On February 19, 2026, the University of Mississippi Medical Center (UMMC) detected a ransomware attack that forced the closure of all 35 of its clinic locations statewide. Hospital emergency departments remained operational. UMMC lost access to phone lines, email, and patient records; staff reverted to handwritten charts. The Medusa ransomware group claimed responsibility and demanded $800,000 ransom within one week. UMMC did not publicly acknowledge the claim or confirm payment. Clinics resumed operations March 2, 2026 after a nine-day shutdown. The attack caused a 20% drop in monthly revenue due to delayed patient care. Over 1 TB of data was reportedly stolen.
Technical Details
- Initial Attack Vector
- Medusa ransomware group breached UMMC; initial vector not publicly disclosed
- Malware Family
- Medusa
Timeline
- 2026-02-19 Breach occurred
- 2026-02-19 Publicly disclosed