Bitcoin ransomware Akira drains $42M from more than 250 companies: FBI

cyptouser3 months agoCryptocurrencies News59
1205f261>

Akira, a year-old ransomware group, breached more than 250 organizations and extracted approximately $42 million in ransomware proceeds, top global cybersecurity agencies alerted.

Investigations conducted by the United States Federal Bureau of Investigation (FBI) found that Akira ransomware has been targeting businesses and critical infrastructure entities in North America, Europe and Australia since March 2023. While the ransomware initially targeted Windows systems, the FBI recently found Akira’s Linux variant as well.

The FBI, along with Cybersecurity and Infrastructure Security Agency (CISA), Europol’s European Cybercrime Centre (EC3) and the Netherlands’ National Cyber Security Centre (NCSC-NL), released a joint cybersecurity advisory (CSA) to “disseminate” the threat to masses.

According to the advisory, Akira gains initial access through pre-installed virtual private networks (VPNs) that lack multifactor authentication (MFA). The ransomware then proceeds to extract credentials and other sensitive information before locking up the system and displaying a ransom note.

“Akira threat actors do not leave an initial ransom demand or payment instructions on compromised networks, and do not relay this information until contacted by the victim.”

The ransomware group demands payments in Bitcoin (BTC) from the victim organizations to restore access. Such malware often disables security software after initial access to avoid detection.

Cybersecurity best practices against ransomware attacks. Source: cisa.gov

Some of the threat mitigation techniques recommended in the advisory are implementing a recovery plan and MFA, filtering network traffic, disabling unused ports and hyperlinks and system-wide encryption.

“The FBI, CISA, EC3, and NCSC-NL recommend continually testing your security program, at scale, in a production environment to ensure optimal performance against the MITRE ATT&CK techniques identified in this advisory,” the agencies concluded.

Related: Mystery malware targets Call of Duty cheaters, stealing their Bitcoin

The FBI, CISA, NCSC and the U.S. National Security Agency (NSA) previously issued alerts about malware that was being used to target crypto wallets and exchanges.

Directories where information were extracted by the malware. Source: National Cyber Security Centre

The report noted that some of the data extracted by the malware included data within the directories of the Binance and Coinbase exchange applications and the Trust Wallet application. According to the report, every file in the directories listed is being exfiltrated regardless of type.

Magazine: Get Bitcoin or die tryin’: Why hip hop stars love crypto

The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other issues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.

related articles

Hut 8 expands borrowing capacity with Coinbase to $65 million, acquires natural gas power plants

Bitcoin miner Hut 8 has secured an additional $15 million from a subsidiary of the United States-bas...

Sentencing of former FTX exec Ryan Salame moved to May 28

Sentencing of former FTX exec Ryan Salame moved to May 28

1205f261˃Sentencing for former FTX co-CEO Ryan Salame has been rescheduled for May 28, according to...

Bitcoin ETF flows will send BTC price into ' parabolic run,' traders say

Bitcoin ETF flows will send BTC price into ' parabolic run,' traders say

55966e89˃Bitcoin is on the verge of entering a “parabolic run”, fueled by increasing inflows into U....

Binance official’s wife demands medical care for detained husband

55966e89˃Yuki Gambaryan, the wife of detained Binance official Tigran Gambaryan, has claimed that he...

Hackers steal $6.2 million in digital assets from LastPass users, investigators track stolen funds

Hackers steal $6.2 million in digital assets from LastPass users, investigators track stolen funds

Hackers stole over $6.2 million in digital assets from 22 LastPass users between Feb. 19 and 20.Bloc...

Biconomy introduces AI agents for on-chain transactions

55966e89˃Web3 infrastructure firm Biconomy is onboarding artificial intelligence (AI) agents to enab...