MSPs a top target for Akira and Lynx ransomware
ID: 76a2a4ca-3ac2-5756-b2db-f60648049aa9
STIX ID: report--76a2a4ca-3ac2-5756-b2db-f60648049aa9
Feed Name: TRU Security by Acronis
Threat Score
Acronis TRU analyzed recent Akira and Lynx ransomware activity, detailing their delivery (phishing, VPN/firewall exploits, stolen credentials), double-extortion data theft, defensive evasion (disabling AV, deleting shadow copies, clearing logs), encryption implementations (ChaCha20 for Akira; AES/ECC-derived for Lynx), and provided IoCs including SHA256 hashes and multiple .onion C2/leak site URLs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
