Get all your news in one place.
100's of premium titles.
One app.
Start reading
TechRadar
TechRadar
Sead Fadilpašić

SonicWall VPN accounts breached by Akira ransomware -and even those using MFA are at risk

Laptop with warning symbols over the keyboard.
  • Akira ransomware exploits CVE-2024-40766 to access SonicWall VPNs despite patches and MFA
  • Researchers suspect OTP seeds were stolen, enabling bypass of one-time password protections
  • Google links attacks to UNC6148 targeting patched, end-of-life SonicWall SMA 100 appliances

Akira ransomware operators are still finding ways to infiltrate SonicWall SSL VPN devices, despite known vulnerabilities being patched, and victims having multi-factor authentication (MFA) enabled on all accounts.

Sign up to read this article
Read news from 100's of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.