Breaches  › Government  › Akira ransomware reboots into Windows Safe Mode t…
critical · government · Disclosed Aug 14, 2026

Akira ransomware reboots into Windows Safe Mode to knock EDR offline

Akira ransomware affiliates were seen using a new technique to evade endpoint detection and response (EDR), where they rebooted a compromised Windows system into Safe Mode with Networking enabled. According to Huntres

Original Disclosure
https://www.csoonline.com/article/4209606/akira-ransomware-…
Read original
Severity
critical
Sector
government
Disclosure date
August 14, 2026
Indexed
7 hours, 5 minutes ago