Medusa Ransomware Gang Demands $8M Ransom from Toyota

November 21, 2023

INCIDENT

Toyota Financial Services (TFS) has confirmed that it detected unauthorized access on some of its systems in Europe and Africa after Medusa ransomware claimed an attack on the company. The Medusa ransomware gang listed TFS to its data leak site on the dark web, demanding a payment of $8,000,000 to delete data allegedly stolen from the Japanese company. The threat actors gave Toyota 10 days to respond, with the option to extend the deadline for $10,000 per day. While Toyota Finance did not confirm if data was stolen in the attack, the threat actors claim to have exfiltrated files and threatened that the data will be leaked if a ransom is not paid.

Incident Date

November 16, 2023

Location

Japan

Estimated Cost

$8M Ransom demanded

Type of Malware

No Malware identified

Threat Source