Yanluowang ransomware access broker gets 81 months in prison
2026-03-24T13:23:29Z•7005741b2d8a3daaa51988bcd5d127f892ef55703df6daae64746848059a9343
Application-Bound EncryptionCISAChromeCrunchyrollDarkSwordDockerDutch Ministry of FinanceGitHubKubernetesMazdaMicrosoft KB5085516","Exchange Online outage","OpenAI","ChatGPTTeamPCPTrivyTycoon2FAVoidStealerYanluowangaccess-brokerdata-breachiOSinfostealerphishingprivacyransomwaresupply-chainwiper
What happened
Multiple high-impact incidents and trends reported: a Russian national sentenced for acting as an initial-access broker for Yanluowang ransomware; confirmed breaches at the Dutch Ministry of Finance and Mazda exposing employee/partner data; Crunchyroll investigating a claimed theft of ~6.8M user records. Supply-chain and tooling compromises by TeamPCP (Trivy scanner breach, malicious Docker images, GitHub tampering) and a return of the Tycoon2FA phishing-as-a-service platform were observed, alongside TeamPCP's Kubernetes-targeting wiper. Other notable items: OpenAI rolling out a ChatGPT "Lib r
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 7005741b2d8a3daaa51988bcd5d127f892ef55703df6daae64746848059a9343
- Enrichment time
- 2026-03-24T13:23:29Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.