Akira Ransomware is a ransomware_group tracked across 8 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed November 14, 2025; most recent activity May 29, 2026.
The Akira ransomware group has been identified as a significant threat to critical infrastructure, with the U.S. Cybersecurity and Infrastructure Security Agency (CISA) and the FBI warning of its active ransomware…
A recent Akira ransomware attack targeted a mid-sized organization by exploiting a disabled local SSL VPN account through brute-force methods. The attackers gained initial access, performed credential discovery, and…
Akira ransomware claims to have breached Apache OpenOffice and stolen 23GB of sensitive corporate data. However, Apache has denied the breach, asserting that OpenOffice's open-source nature prevents such an incident.…
SonicWall has issued a security advisory regarding a critical vulnerability in its SonicOS operating system, identified as CVE-2025-40601. This high-severity flaw affects Gen7 and Gen8 hardware and virtual appliances,…
SonicWall reported a security incident involving unauthorized access to backup firewall configuration files stored in a cloud environment. The company attributed the breach to a state-backed threat actor and engaged…
SonicWall reported unauthorized access to backup firewall configuration files in September 2025, attributed to a state-backed threat actor. The company engaged Mandiant for an investigation and communicated with…
A significant security flaw in WhatsApp's discovery system allowed researchers to access the phone numbers and personal information of approximately 3.5 billion users globally. The vulnerability, which exploited a…
SonicWall has disclosed a critical vulnerability in its SonicOS SSLVPN service, tracked as CVE-2025-40601, which allows remote, unauthenticated attackers to crash Gen7 and Gen8 firewalls. The flaw, caused by a…