Ransomware operators are exploiting a critical code execution flaw in Veeam Backup & Replication.
The flaw, CVE-2024-40711, allows for remote code execution and has a severity score of 9.8.
Sophos X-Ops researchers observed recent attacks exploiting compromised credentials and the Veeam vulnerability to deploy ransomware.
Sophos emphasizes the importance of patching vulnerabilities, updating/replacing unsupported VPNs, and using multifactor authentication to control remote access.