The Frag ransomware is exploiting a critical flaw in Veeam Backup & Replication software known as CVE-2024-40711 to deploy malware, according to cybersecurity researchers at Sophos. Despite Veeam having released fixes for multiple vulnerabilities in September 2024, attacker are still using compromised VPN gateways to access systems and exploit this flaw. STAC 5881, a cyber threat actor, has been identified as exploiting this vulnerability to deploy Frag ransomware on compromised networks.

ThreatsDay Bulletin: Cisco 0-Days, AI Bug Bounties, Crypto Heists, State-Linked Leaks and 20 More Stories
Behind every click, there’s a risk waiting to be tested. A simple ad, email, or link can now hide something dangerous. Hackers are getting smarter,


