HC3: Analyst Note: Akira Ransomware
ID: 7f50d953-dff7-5c7e-8f08-1e01d5b93802
STIX ID: report--7f50d953-dff7-5c7e-8f08-1e01d5b93802
Feed Name: DataBreaches.Net
This report profiles the Akira ransomware gang, active since May 2023, which has claimed at least 81 victims and increasingly targets U.S. organizations—particularly in the healthcare sector—using a RaaS model and double-extortion tactics across both Windows and Linux environments; it highlights possible links to the former Conti group, notes primary geographic and industry focus areas, and references known MITRE ATT&CK-aligned TTPs while directing readers to HC3 for further technical detail.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
