12-08-2026 15:00 via theregister.com

Akira ransomware scum blocked victim's security tools – and broke their own encryptor

An Akira ransomware affiliate rebooted a victim’s computer into Safe Mode to kill its security tools – and in the process sabotaged their own malware when the limited-function startup mode also broke their encryptor. But the ending wasn't entirely happy for the victim. The attacker had already stolen credentials and data from file shares before Safe Mode prevented the ransomware from doing its job. Huntress security operations analyst James Northey detailed the incident in a Wednesda
Read more »