logo

#StopRansomware: Akira Ransomware

ID: ab3a2ebb-3a16-532e-a5ad-c61fb314c3a3

STIX ID: report--ab3a2ebb-3a16-532e-a5ad-c61fb314c3a3

Feed Name: CISA Cybersecurity Advisories

Threat Score
85/100

Date Published: 2024-04-17

Date Updated: 2026-04-19

Author: CISA

...
...

This joint advisory from FBI, CISA, and international partners details Akira ransomware activity, describing initial access (VPNs, exploited CVEs such as CVE-2024-40766, phishing, credential abuse), multi-platform encryption (Windows, ESXi, Nutanix AHV) with `.akira`/`.powerranges`/`.akiranew` extensions, data exfiltration and double-extortion tactics, comprehensive IOCs (file hashes, commands, scripts), observed tools and techniques, impacted sectors (including critical infrastructure and education), and recommended mitigations and reporting channels.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.