The Frag ransomware is exploiting a critical flaw in Veeam Backup & Replication software known as CVE-2024-40711 to deploy malware, according to cybersecurity researchers at Sophos. Despite Veeam having released fixes for multiple vulnerabilities in September 2024, attacker are still using compromised VPN gateways to access systems and exploit this flaw. STAC 5881, a cyber threat actor, has been identified as exploiting this vulnerability to deploy Frag ransomware on compromised networks.
What 2025 holds for user identity protection
David Cottingham, President of rf IDEAS, believes improvements in multi-factor authentication (MFA) are needed as businesses recognize its importance. He recommends seamless implementation for easier