Storm-1175 dropped Medusa for its own ransomware — and got in through the N-central patch that did not hold
2026-08-13Security
Microsoft attributes StormEncryptor, a new C++ locker, to the China-linked group. Initial access was likely CVE-2026-18577 in N-able N-central, which is itself a bypass of the earlier fix. CISA has both flagged as exploited.