Sonicwall VPN accounts that are violated by Akira Ransomware -and even those who use MFA are in danger


  • Akira Ransomware Utilizes CVE-2024-40766 to access Sonicwall VPNs in spite of patches and MFA
  • Researchers suspected OTP seeds were stolen, enabling bypass of disposable password protection
  • Google Links Attacks for UNC6148 Targeted Lapped, End-of-Life Sonicwall SMA 100 appliances

Akira Ransomware operators still find ways to infiltrate Sonicwall SSL VPN devices, despite the fact that known vulnerabilities were patched and victims who have multifactor approval (MFA), enabled in all accounts.

Several security researchers have confirmed the attacks that take place – but they have different (but something similar) theories of what is actually happening.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top