Share this article

Latest news

With KB5043178 to Release Preview Channel, Microsoft advises Windows 11 users to plug in when the battery is low

Copilot in Outlook will generate personalized themes for you to customize the app

Microsoft will raise the price of its 365 Suite to include AI capabilities

Death Stranding Director’s Cut is now Xbox X|S at a huge discount

Outlook will let users create custom account icons so they can tell their accounts apart easier

Akira Ransomware is targeting Cisco AnyConnect to steal your credentials

Threat agents are using your VPN services to get into your system

2 min. read

Published onFebruary 20, 2024

published onFebruary 20, 2024

Share this article

Read our disclosure page to find out how can you help Windows Report sustain the editorial teamRead more

Cybercriminals are using Akira ransomware to target the vulnerabilities of Cisco AnyConnect. Furthermore, with it, they are getting access to your network. Also, with Akira ransomware, they can gather your data and install malware or execute other potentially malicious activities.

What is Akira ransomware?

What is Akira ransomware?

Akira ransomware is a new threat that leaks stolen data encrypts files on your system. In addition, threat actors can use it to steal your username and passwords. Also, this type of malware tries to prevent you from recovering files by deleting their copies from your system. On top of that, it spreads fast across your network.

Moreover, cybercriminals could request ransom to remove the Akira ransomware from your system. However, nobody guarantees that they won’t come back. After all, they might be targeting your sensitive data to sell it to another company.

Theresearch by Truesecshows that one of the main entry points for Akira ransomware is, in fact, the Cisco Anyconnect SSL VPN. The malware exploits it by using the CVE-2020-3259 vulnerability. Unfortunately, if you used the VPN in the past, even if you updated it constantly, there might already be some security problems regarding your data.

If you think that your data might be at risk, the best thing to do is to change your passwords. In addition, you could get an anti malware application featuring a ransomware detector to get rid of Akira. Furthermore, you could start moving to another email using a new device. However, that’s a bit of a last resort method.

In a nutshell, if you’ve been using Cisco Anyconnect VPN, useanti-malwareon your device to protect your data. Afterward, change your password. Also, know that the Akira ransomware doesn’t affect just the Cisco VPN. It could target multiple VPN applications. Thus, you might want to always use a different password for your accounts and a different account for your VPN services.

What do you think? Are you going to change your VPN? Let us know in the comments.

More about the topics:Cisco,Ransomware,VPN

Sebastian Filipoiu

Sebastian is a content writer with a desire to learn everything new about AI and gaming. So, he spends his time writing prompts on various LLMs to understand them better. Additionally, Sebastian has experience fixing performance-related problems in video games and knows his way around Windows. Also, he is interested in anything related to quantum technology and becomes a research freak when he wants to learn more.

User forum

0 messages

Sort by:LatestOldestMost Votes

Comment*

Name*

Email*

Commenting as.Not you?

Save information for future comments

Comment

Δ

Sebastian Filipoiu

Sebastian is a content writer with a desire to learn everything new about AI and gaming.