#StopRansomware: Akira Ransomware
ID: ab3a2ebb-3a16-532e-a5ad-c61fb314c3a3
STIX ID: report--ab3a2ebb-3a16-532e-a5ad-c61fb314c3a3
Feed Name: CISA Cybersecurity Advisories
This joint advisory from FBI, CISA, and international partners details Akira ransomware activity, describing initial access (VPNs, exploited CVEs such as CVE-2024-40766, phishing, credential abuse), multi-platform encryption (Windows, ESXi, Nutanix AHV) with `.akira`/`.powerranges`/`.akiranew` extensions, data exfiltration and double-extortion tactics, comprehensive IOCs (file hashes, commands, scripts), observed tools and techniques, impacted sectors (including critical infrastructure and education), and recommended mitigations and reporting channels.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
