FBI Warns Akira Ransomware Stole $244M from Businesses
- On Thursday, the Cybersecurity and Infrastructure Security Agency , Federal Bureau of Investigation , Department of Defense Cyber Crime Center and Department of Health and Human Services issued a joint advisory warning Akira encrypts Nutanix AHV virtual machines.
- Akira ransomware affiliates gain initial access by stealing or brute-forcing VPN and SSH credentials on exposed routers and firewalls, exploiting SonicWall CVE-2024-40766 and targeting a VPN without multifactor authentication earlier this year.
- Researchers observed Akira using nltest, AnyDesk, LogMeIn, Impacket and exploiting Veeam Backup & Replication CVE-2023-27532 and CVE-2024-40711 to delete backups and exfiltrate data within two hours via Ngrok.
- Critical industries face active attacks as Akira exploits edge and backup vulnerabilities, with officials saying the group has claimed more than $244 million in proceeds and the FBI monitoring over 130 ransomware variants.
- Officials cautioned that Akira collaborates with other threat groups and exploits six new vulnerabilities, urging stronger defenses against its double‑extortion model and Tor leak threats this month.
18 Articles
18 Articles
FBI calls Akira ‘top five’ ransomware variant out of 130 targeting US businesses
Federal cyber authorities shared new details Thursday about the Akira ransomware group’s techniques, the tools it uses and vulnerabilities it exploits for initial access alongside the release of a joint cybersecurity advisory. Members of the financially motivated group, which initially appeared in March 2023, are associated with other threat groups, including Storm-1567, Howling Scorpius, Punk Spider, Gold Sahara, and may have connections with t…
Cybersecurity Snapshot: Refresh Your Akira Defenses Now, CISA Says, as OWASP Revamps Its App Sec Top 10 Risks
Learn why you should revise your Akira ransomware protection plans. Plus, find out what’s new in OWASP’s revamped Top 10 Web Application Risks list. Also, find out about agentic AI’s cognitive degradation risk. And get the latest on AI security trends and CISO compensation.Key takeawaysCISA and other agencies are urging organizations, especially in critical infrastructure, to immediately update defenses against the evolving Akira ransomware, whi…
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium










