logo

Akira RaaS Targets Nutanix VMs, Threatens Critical Orgs

ID: e1305a12-a167-5271-9c37-7048c7407907

STIX ID: report--e1305a12-a167-5271-9c37-7048c7407907

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2025-11-14

Date Updated: 2026-04-21

Author: Nate Nelson, Contributing Writer

...
...

This advisory summarizes coordinated warnings from US and European agencies about Akira ransomware activity: a fast-moving RaaS operation that has expanded to target hypervisors (including Nutanix AHV), exploited known vulnerabilities (e.g., CVE-2024-40711, CVE-2024-40766), used commercial RMM tools and malware like SystemBC/StoneStop/PoorTry to undermine defenses, and performed lightning-fast data exfiltration across critical sectors, collecting hundreds of millions in ransom and affecting over a thousand known victims.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.