The Frag ransomware is exploiting a critical flaw in Veeam Backup & Replication software known as CVE-2024-40711 to deploy malware, according to cybersecurity researchers at Sophos. Despite Veeam having released fixes for multiple vulnerabilities in September 2024, attacker are still using compromised VPN gateways to access systems and exploit this flaw. STAC 5881, a cyber threat actor, has been identified as exploiting this vulnerability to deploy Frag ransomware on compromised networks.
Infostealers Dominate as Lumma Stealer Detections Soar by Almost 400%
Cybersecurity firm ESET reported a 369% increase in detections of the Lumma Stealer infostealer malware in the second half of 2024. The malware targets two-factor