Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

CL-STA-0969 installs secret malware on telecom networks during 10 months of spying

New “Pest” PAM Backdoor exposes critical Linux systems to silent qualification theft

What should the founder think about if they are trying to raise the series c?

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » Akira ransomware exploits Sonic Wall VPN with zero-day attacks on fully patched devices
Identity

Akira ransomware exploits Sonic Wall VPN with zero-day attacks on fully patched devices

userBy userAugust 2, 2025No Comments2 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

August 2, 2025Ravi LakshmananVulnerability/Zero Day

SonicWall SSL VPN devices have been subject to Akira ransomware attacks as part of a new surge in activity observed in late July 2025.

“The reviewed intrusions have observed multiple ransomware intrusions in a short period of time, each including VPN access via Sonicwall SSL VPN,” said Julian Tuin, a researcher at Arctic Wolf Labs, in a report.

Cybersecurity companies have suggested that the attack could be exploiting the still-determined security flaws in the appliance. However, the possibility of qualification-based attacks for early access is not ruled out.

The rise in attacks, including SonicWall SSL VPNs, was first registered on July 15, 2025, but Arctic Wolf has been observing similar malicious VPN logins until October 2024, suggesting sustained efforts to target devices.

“A short interval was observed between initial SSL VPN account access and ransomware encryption,” he said. “In contrast to legitimate VPN logins, typically derived from networks run by broadband internet service providers, ransomware groups use virtual private server hosting for VPN authentication in compromised environments.”

Identity Security Risk Assessment

For more information about the activity, the query sent to SonicWall did not elicit a response until the publication of this article. As a mitigation, organizations are encouraged to consider disabling the Sonicwall SSL VPN service until patches are available and deployed, taking into account the potential zero-day vulnerabilities.

Other best practices include implementing Multifactor Authentication (MFA) for Remote Access, deleting inactive or unused local firewall user accounts, and password hygiene.

In early 2024, the Akira Ransomware actor is estimated to have forced him to earn around $42 million in illegal income after targeting more than 250 victims. It first appeared in March 2023.

Statistics shared by Checkpoint show that Akira was the second most active group after Qilin in the second quarter of 2025, claiming 143 casualties during the period.

“Achira ransomware maintains a special focus on Italy, with 10% of victims of Italian companies comparing it to 3% of the general ecosystem,” the cybersecurity company said.


Source link

#BlockchainIdentity #Cybersecurity #DataProtection #DigitalEthics #DigitalIdentity #Privacy
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleKleiner Perkins has a really good week
Next Article What should the founder think about if they are trying to raise the series c?
user
  • Website

Related Posts

CL-STA-0969 installs secret malware on telecom networks during 10 months of spying

August 2, 2025

New “Pest” PAM Backdoor exposes critical Linux systems to silent qualification theft

August 2, 2025

Beyond Zuckerberg’s Metaverse: TwinH Powers Digital Government with Berners-Lee’s New Internet Vision

August 1, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

CL-STA-0969 installs secret malware on telecom networks during 10 months of spying

New “Pest” PAM Backdoor exposes critical Linux systems to silent qualification theft

What should the founder think about if they are trying to raise the series c?

Akira ransomware exploits Sonic Wall VPN with zero-day attacks on fully patched devices

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Beyond Zuckerberg’s Metaverse: TwinH Powers Digital Government with Berners-Lee’s New Internet Vision

The TwinH Advantage: Unlocking New Potential in Digital Government Strategies

New Internet Era: Berners-Lee Sets the Pace as Zuckerberg Pursues Metaverse

TwinH Transforms Belgian Student Life: Hendrik’s Journey to Secure Digital Identity

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.