Jan. 29, 2024, 2:30 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

In several recent incident response missions, the Truesec CSIRT team made forensic observations indicating that the old vulnerability CVE-2020-3259 is likely to be actively exploited by the Akira ransomware group.


Truesec platform customers can already read the related threat notice in the Truesec portal.


Indications of Akira Ransomware group actively exploiting Cisco Anyconnect CVE-2020-3259


During the past weeks, the Truesec CSIRT team found forensic data indicating that the Akira Ransomware group might be actively exploiting an old Cisco ASA …

actively exploited akira akira ransomware anyconnect can cisco cisco anyconnect csirt customers cve exploitation exploited exploiting forensic incident incident response notice old platform portal ransomware ransomware group response team threat truesec vulnerability

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Security Operations Manager-West Coast

@ The Walt Disney Company | USA - CA - 2500 Broadway Street

Vulnerability Analyst - Remote (WFH)

@ Cognitive Medical Systems | Phoenix, AZ, US | Oak Ridge, TN, US | Austin, TX, US | Oregon, US | Austin, TX, US

Senior Mainframe Security Administrator

@ Danske Bank | Copenhagen V, Denmark