Tag: Akira ransomware

SOC Threat Radar
SOC Threat Radar — October 2025

SOC Threat Radar — October 2025

In this edition of the SOC Threat Radar, you’ll discover the key attack behaviors identified over the past month by Barracuda Managed XDR’s security solutions, threat intelligence resources, and SOC analysts. These include: A rise in ransomware attacks targeting vulnerable...

/ October 27, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: SonicWall VPNs targeted by Akira ransomware

Cybersecurity Threat Advisory: SonicWall VPNs targeted by Akira ransomware

Akira ransomware operators have launched an aggressive campaign targeting SonicWall VPN appliances. Attackers have already breached accounts protected by multi-factor authentication (MFA) successfully, leveraging vulnerabilities in SonicWall Secure Mobile Access (SMA) and SSL-VPN portals. The campaign is characterized by rapid...

/ September 30, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: SonicWall VPN attacked

Cybersecurity Threat Advisory: SonicWall VPN attacked

There has been a rise in ransomware attacks targeting SonicWall. Many incidents trace back to migrations from Gen 6 to Gen 7 firewalls, where local user passwords were carried over without being reset. Review this Cybersecurity Threat Advisory to ensure...

/ August 18, 2025
Cybersecurity Threat Advisory
Cybersecurity Threat Advisory: SonicWall SMA arbitrary file upload vulnerability

Cybersecurity Threat Advisory: SonicWall SMA arbitrary file upload vulnerability

Attackers are actively exploiting CVE-2025-40599, a critical vulnerability in SonicWall’s Secure Mobile Access (SMA) devices, to upload arbitrary files and gain unauthorized access. This flaw enables them to execute malicious code and compromise affected systems. The Akira ransomware group is...

/ August 8, 2025