MEI A.I CyberSecurity Scoring
MEI
Company Information
Website:http://www.mei.edu
Employees number:389
Number of followers:39,162
NAICS:92812
Industry Type:International Affairs
Homepage:mei.edu
MEI Risk Score (AI oriented)
Between 700 and 749
MEIInternational Affairs
Updated:
09/03/2026
09/03/2026
739/1000
Moderate
Ba
MEI Global Score (TPRM)
xxxx
MEIInternational Affairs
Score locked

MEIModerate
Current Score
739Ba (MODERATE)
01000
1 incidents
-18 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
741
JUNE 2026
741
MAY 2026
740
APRIL 2026
740
MARCH 2026
739
FEBRUARY 2026
739
JANUARY 2026
738
DECEMBER 2025
738
NOVEMBER 2025
754
Cyber Attack
01 Nov 2025 • MEI
Middle Eastern Target: North Korean Lazarus Group Expands Ransomware Activity With Medusa
North Korean Hackers Linked to Surge in Medusa Ransomware Attacks on US Healthcare
736
MEDIUM-18
MID1771959526
North Korean Hackers Linked to Surge in Medusa Ransomware Attacks on US Healthcare
Since its 2023 launch as a ransomware-as-a-service (RaaS) platform, Medusa operated by the Spearwing cybercrime group has been deployed in over 366 attacks, with affiliates earning a cut of ransom payments. Recent activity, however, has been traced to North Korean state-backed hackers, including the Lazarus Group and its Stonefly (Andariel) sub-group, despite US indictments targeting their operations.
In early November 2025, four US healthcare and non-profit organizations including a mental health non-profit and a school for autistic children were listed as victims on Medusa’s leak site, with average ransom demands reaching $260,000. Earlier attempts in 2024 and 2025 included failed breaches of a Middle Eastern target and a US healthcare provider.
The US Justice Department’s July 2025 indictment of Rim Jong Hyok, an alleged Stonefly member linked to North Korea’s Reconnaissance General Bureau (RGB), revealed that ransomware proceeds funded espionage against US, Taiwanese, and South Korean defense, technology, and government sectors. Despite the crackdown, intrusion attempts persisted into October 2024, though no ransomware was deployed.
Recent campaigns employed a suite of tools, including the Comebacker backdoor, Blindingcan RAT, ChromeStealer, Mimikatz, and custom utilities like RP_Proxy. While these tactics align with Stonefly’s past operations, researchers note the tools aren’t exclusive to the group.
Symantec’s analysis underscores North Korea’s unrelenting cybercrime expansion, with Lazarus actors showing little hesitation in targeting critical sectors like healthcare a departure from some cybercriminal groups that avoid such high-risk victims due to reputational fallout. The shift to Medusa signals a continued evolution in their financially motivated attacks.
INCIDENT DETAILS -
TYPE
MOTIVATION
REFERENCES
OCTOBER 2025
754
SEPTEMBER 2025
754
AUGUST 2025
754
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for MEI ??
What was MEI's A.I Rankiteo Cyber Score in June 2026 ??
What was MEI's A.I Rankiteo Cyber Score in May 2026 ??
What was MEI's A.I Rankiteo Cyber Score in April 2026 ??
What was MEI's A.I Rankiteo Cyber Score in March 2026 ??
What was MEI's A.I Rankiteo Cyber Score in February 2026 ??
What was MEI's A.I Rankiteo Cyber Score in January 2026 ??
What was MEI's A.I Rankiteo Cyber Score in December 2025 ??
What was MEI's A.I Rankiteo Cyber Score in November 2025 ??
What was MEI's A.I Rankiteo Cyber Score in October 2025 ??
What was MEI's A.I Rankiteo Cyber Score in September 2025 ??
What was MEI's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on MEI's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with MEI ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view MEI's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?