Microsoft Warns of Critical GoAnywhere MFT Vulnerability Exploited in Medusa Ransomware Attacks
390/68 Wednesday, October 8, 2025 Microsoft has disclosed that a cybercriminal group tracked as Storm-1175 has been exploiting a critical vulnerability (CVSS 10.0) in Fortra’s GoAnywhere MFT (Managed File Transfer) software to conduct Medusa ransomware attacks for nearly a month. The flaw, tracked as CVE-2025-10035, stems from the deserialization of untrusted data within the software’s […]
