RANSOMWARE VICTIMDUPLICATE CLAIM

ATIRG

medusa📅 October 22, 2025
8
same group

Attack Intelligence

ATIRG was compromised in a ransomware attack attributed to medusa in October 2025. The organization, operating in an undisclosed sector in Unknown, was added to the group's data leak site as part of an extortion campaign.

medusa operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

ATIRG (Association pour le Traitement de l’Insuffisance Rénale en Guyane) is a non-profit medical organization located in French Guiana, dedicated to providing dialysis treatment and kidney care for patients suffering from chronic renal failure. Established in 1981, ATIRG operates several autodialysis centers in Cayenne, Kourou, and Saint-Laurent-du-Maroni, offering patients the opportunity to manage their own dialysis under professional supervision. The organization focuses on improving patients’ quality of life through medical care, training, and nutritional support. ATIRG works closely with local hospitals and healthcare professionals to ensure safe, effective, and continuous kidney treatment across the region. company is headquartered in 1361 Route de Baduel, 97300 Cayenne, French Guiana.

Additional Details

ransom
100000

Other Victims — medusa (8)

Quick Facts

Attack DateOct 22, 2025
Intel Sourceransomware.live
StatusDUPLICATE CLAIM

Threat Group

medusa
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.