Critical Veeam Vulnerability Exploited to Spread Akira and Fog Ransomware
Threat actors are actively trying to use the Akira and Fog ransomware to take advantage of a security hole in Veeam Backup & Replication that has been addressed.
According to cybersecurity provider Sophos, it has been monitoring a number of assaults over the last month that use CVE-2024-40711 and compromised VPN credentials to establish a local account and spread ransomware.
The CVSS has assigned a rating of 9.8 out of 10.0 to CVE-2024-40711, which is a critical vulnerability that permits unauthenticated remote code execution. Early in September 2024, Veeam addressed it with Backup & Replication version 12.2.
Security flaws have been identified and reported by Florian Hauser, a security researcher at Germany's CODE WHITE read more about Critical Veeam Vulnerability Exploi...

