RANSOMWARE VICTIM

Walman Optical

medusa📅 April 26, 2026
8
same group

Attack Intelligence

Walman Optical was compromised in a ransomware attack attributed to medusa in April 2026. The organization, operating in an undisclosed sector in Unknown, was added to the group's data leak site as part of an extortion campaign.

medusa operates as a financially motivated ransomware-as-a-service (RaaS) operation, exfiltrating sensitive data and threatening public disclosure to pressure victims into paying ransom demands.

Walman Optical who is owned by well-known Company EssilorLuxottica is a U.S.-based optical company founded in 1915 and headquartered in Minneapolis, Minnesota. It is a leading manufacturer and distributor of ophthalmic products, including prescription lenses, frames, and optical equipment. The company primarily serves eye care professionals such as optometrists and ophthalmologists by providing advanced lens technologies, coatings, and laboratory services. With multiple locations and production facilities across the United States, Walman Optical has built a strong reputation in the vision care industry. As part of EssilorLuxottica, the company benefits from global resources, innovation, and an expanded market presence. The company headquarters is located in 801 12th Avenue North, Minneapolis, Minnesota 55411, United States with 1K - 5K Employees.

Other Victims — medusa (8)

Quick Facts

Attack DateApr 26, 2026
Intel Sourceransomlook

Threat Group

medusa
Motivation: financial
View group profile →

External Links

Data sourced from Ransomware.live, RansomLook, and CTIWATCH OSINT collection. Victim listing does not imply confirmed breach — intelligence based on group claims.