Tag: ransomware breaching

Akira ransomware breaching MFA-protected SonicWall VPN accounts
News

Akira ransomware breaching MFA-protected SonicWall VPN accounts

Even if OTP MFA is set on accounts, threat actors are still successfully entering in to SonicWall SSL VPN devices as a result of ongoing Akira ransomware attacks. Although the precise technique is still unknown, researchers believe that this might be accomplished by using OTP seeds that have already been stolen. Researchers suspected that a zero-day vulnerability was being used to hack SonicWall SSL VPN devices after BleepingComputer revealed in July that the Akira ransomware operation was using these devices to compromise business networks. But in the end, SonicWall connected the assaults to an incorrect access control vulnerability known as CVE-2024-40766 that was made public in September 2024. Even after the security patches were implemented in August 2024, threat actors have ...