An Akira ransomware affiliate used Windows Safe Mode with Networking to disable security tools after accessing a network through an exposed SonicWall VPN device. The attackers stole files and credentials, but their encryption payload failed to run. Akira attackers access network through exposed VPN The Akira ransomware Safe Mode attack began on 4 August when…
The Akira ransomware attack has struck again, this time targeting 11 companies across manufacturing and construction. The group, which emerged in 2023, has rapidly become one of the most dangerous ransomware operations in the world. Their latest campaign highlights ongoing weaknesses in critical industries. 11 Companies Added to Victim List Akira has listed 11 new…
Akira ransomware SonicWall attacks now bypass multi-factor authentication. Criminals exploit SonicWall SSL VPN accounts even when MFA is enabled. Researchers observed attackers gaining access despite multiple one-time password prompts. The method remains under investigation, but stolen OTP seeds may play a role. Vulnerability linked to CVE-2024-40766 SonicWall traced many intrusions to CVE-2024-40766, an improper access…