CyberWire Daily

Hacktivists go galactic.

24 snips
Nov 26, 2025
Cynthia Kaiser, Senior Vice President at the Ransomware Research Center at Halcyon, offers insights into Akira ransomware's tactics and impact. She details Akira's quick encryption methods and sophisticated techniques like DLL sideloading. The discussion highlights the group's targeting of various industries and the risks associated with the Ransomware-as-a-Service model. Kaiser emphasizes the importance of patching vulnerabilities and adopting multi-factor authentication to counter these cyber threats effectively.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Space Sector Now Regular Conflict Target

  • Cyber operations against space organizations spiked during the Gaza War, mostly from pro-Palestinian hacktivists using large recycled target lists.
  • Space-sector targeting is now a routine element of geopolitical escalation and not limited to sophisticated satellite attacks.
INSIGHT

Legitimate Sites Weaponized For Delivery

  • Arctic Wolf links Russia-aligned RomCom to SockGolis delivery of Mythic agent through compromised legitimate websites.
  • Attackers weaponize routine web browsing by exploiting compromised sites as a malware delivery framework.
INSIGHT

HashJack Exploits AI Browser Prompts

  • HashJack uses the hash/pound symbol to inject prompts into AI browser assistants and feed hidden instructions to LLMs.
  • Agentic browsers can escalate the attack by automatically sending user data to attacker-controlled endpoints.
Get the Snipd Podcast app to discover more snips from this episode
Get the app