Cybercrime Magazine Podcast · Cybercrime Magazine

Cybercrime News For Apr 9, 2026. Russian Hackers Hijack Routers, Steal Passwords. WCYB Digital Radio

April 9, 2026·3 min
1. WCYB Digital Radio's Cybercrime Magazine Podcast presents a five-story daily cybercrime bulletin for April 9th, 2026, reported by David Braue. 2. Reporter David Braue is the correspondent for Cybercrime Radio; no other guests or hosts appear. 3. The bulletin's implicit thesis is that April 6th through 7th saw a dense cluster of significant cyber incidents spanning state-sponsored hacking, infrastructure attacks, ransomware, and data leaks across four countries. 4. APT28, also known as Fancy Bear and linked to Russia's GRU military intelligence agency, compromised thousands of home and small business routers worldwide by exploiting outdated firmware to redirect traffic and capture passwords and access tokens. 5. Researchers and government authorities disclosed the APT28 router campaign on April 7th; affected users had no indication their routers were compromised during the surveillance period. 6. APT28 was previously attributed to the 2016 Democratic National Committee breach and the 2022 Viasat satellite hack, according to TechCrunch. 7. On April 6th, a large-scale DDoS attack hit Rostelecom, the Russian state-owned telecommunications provider, disrupting internet access in approximately 30 cities. 8. The Rostelecom attack affected online banking, government portals, and other services; the company deployed emergency traffic filtering measures to reduce the impact. 9. Minnesota Governor Tim Walz authorized emergency National Guard assistance after a cyberattack severely disrupted Winona County's digital infrastructure beginning April 6th. 10. The attack continued into April 7th and significantly impaired the county's ability to deliver critical emergency and municipal services; the National Guard's Cyber Protection Team was deployed to restore systems. 11. Dutch healthcare software provider Chipsoft, whose systems support approximately 70% of hospitals in the Netherlands, confirmed a ransomware incident on April 7th. 12. Several Dutch hospitals reported that their individual systems remained unaffected or that patient data was secure, though Chipsoft confirmed possible unauthorized access and said it is working to contain spread. 13. The Chipsoft incident was disclosed by Dutch healthcare cybersecurity organization Zesert, which alerted healthcare institutions to the risk. 14. Hackers accessed and leaked approximately 7.7 terabytes of records from the Los Angeles City Attorney's Office storage system, containing discovery documents from civil litigation cases involving the LAPD. 15. The leaked LAPD materials included internal affairs documents and personnel information from previously settled or adjudicated cases, raising concerns about law enforcement data exposure. 16. Officials in Los Angeles confirmed they are assessing the full scope of the breach. 17. The bulletin is sponsored by Evolution Equity Partners, described as an international venture capital firm investing in cybersecurity and enterprise software companies. 18. The format is a short daily news bulletin read by a single reporter with no host discussion, analysis, or editorial commentary — strictly attribution-based journalism. 19. Cybersecurity professionals, IT administrators, and news consumers who track nation-state hacking, ransomware, and government cyber incidents will find this bulletin efficient and current. 20. Listeners seeking analysis, context, or expert commentary on any of these stories will not find it here — the format is strictly headline-plus-attribution.
Listen to the show on