logo

Arkana Ransomware Group Hacks WideOpenWest Using Data from an Infostealer Infection

ID: be0e026f-4129-5189-8592-8b96741b96d5

STIX ID: report--be0e026f-4129-5189-8592-8b96741b96d5

Feed Name: infostealers.com

Threat Score
80/100

Date Published: 2025-03-25

Date Updated: 2026-04-28

Author: InfoStealers

...
...

Hudson Rock reports that the Arkana ransomware group exploited an infostealer infection on a WideOpenWest employee in September 2024 to steal credentials for wowinc.symphonica.com, wowway.com, and appiancloud.com, gaining access to Symphonica and AppianCloud systems, exfiltrating data and claiming control of over 403,000 customer accounts; Arkana is using the data to extort WOW! and even published a video demonstrating access. The report recommends strengthened infostealer monitoring, EDR deployment, prompt credential resets, MFA, and network segmentation to prevent similar incidents.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.