Akira
Akira is a data-ransom operation offered as a service, first observed in 2023. Government and security sources associate it with access via virtual private networks without multi-factor authentication, valid credentials, exposed services, remote desktop, and targeted impersonation, as well as extortion through encryption and data leaks.
- Incidents
- 2
- High impact
- 0
- First seen
- May 3, 2024
- Latest seen
- Jan 31, 2025
Linked incidents
Farmatodo is listed as a victim of the Akira ransomware on its leak site
The Venezuelan pharmacy and convenience store chain Farmatodo (farmatodo.com) was listed as a victim by the Akira ransomware group on January 31, 2025. The entry was part of Akira’s mass publication titled “Taking Stock of 2024 | Part 1,” in which the group listed Farmatodo alongside dozens of other companies allegedly compromised. The list is categorized under Venezuela and the consumer services sector. There has been no public confirmation from the company, nor are there any official figures regarding the data exposed.
Akira Denounces Attack on Inproceca, C.A. (Avelina) Grain Industry and Processing Company
Inproceca/Avelina reported a cyberattack to the CICPC, and reports from trackers attributed the incident to Akira. Public evidence supports an attack on the technology platform and a ransom note, but does not confirm any data breaches or the scope of the forensic investigation.