The U.S. CISA warns that the Akira ransomware group poses an imminent threat to critical infrastructure and uses various exploits and tactics for initial access and persistence. The group has accumulated over $244 million in ransom payments and continues to exploit known vulnerabilities to execute attacks. #AkiraRansomware #Vulnerabilities #CISA
Keypoints
- Akira ransomware is considered an imminent threat to critical infrastructure by CISA.
- The group exploits multiple vulnerabilities, including SonicWall CVE-2024-40766 and Veeam vulnerabilities.
- Initial access is gained through VPN compromise, SSH exploits, and brute-force attacks.
- Akira uses scripts, remote access tools, and tunneling utilities to evade detection and maintain persistence.
- Security recommendations include patching vulnerabilities, implementing MFA, and maintaining offline backups.
Read More: https://thecyberexpress.com/akira-ransomware-group-cisa-warning/