PYSA ransomware targeting education sector
04/08/2021
On 16th March 2021, the FBI published a flash alert about the recent increase in PYSA ransomware targeting both US and UK educational institutions.
In the UK, the National Cyber Security Centre also released a similar alert on 23rd March 2021 for the UK education sector without naming the PYSA variant.
Though first observed and reported in October 2019 when the group was targeting large corporates, PYSA got more public attention when CERT France issued an alert in April 2020 that the variant was targeting French local authorities.
PYSA is a new variant of ransomware to join the big names like Ryuk, Sobinokibi and Maze to target large finance, government, education and healthcare organisations. It is a human-operated ransomware tool operated by an unknown Advance Persistent Threat (APT) group.
Click here to download our guide to the delivery, risks and mitigation of PYSA and how we can help.