Fog ransomware targets SonicWall VPNs to breach corporate networks

Using SonicWall VPN accounts, operators of the Fog and Akira ransomware are progressively breaking into business networks. It is thought that the threat actors are taking use of a critical SSL VPN access control vulnerability called CVE-2024-40766.

After patching the SonicOS vulnerability in late August 2024, SonicWall issued a warning about active exploitation around a week later.

Security experts from Arctic Wolf also noted that affiliates of the Akira ransomware were using the vulnerability to obtain early access to victim networks.

According to a recent Arctic Wolf investigation, at least 30 attacks have been carried out by Akira and the Fog ransomware operation read more about Fog ransomware targets SonicWall VPNs to breach corporate networks

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *