Over 20,000 crypto fraud victims identified in international crackdown
2026-04-12T01:23:34Z•a7f91f80b2fadad0c2f6aa651f94374807a4f321f2b40b02673c31b5a8f69697
chipsoftcpu-zcpuidcredential-theftcryptocurrency-fraudhealthcare-securityhwmonitoricsindustrial-control-systemsiran-linkedjoomlalaw-enforcementlucidrookphishingphishing-as-a-serviceplcransomwarerockwell-automationsmart-slidersoftware-supply-chainstate-linked-actorsupply-chain-attacktargeted-malware','cisa-kev','patch-management','gmail-e2ee','g_venomwordpress
What happened
BleepingComputer roundup: U.K. NCA-led action identified over 20,000 cryptocurrency fraud victims across Canada, the UK and the U.S. Multiple high-impact incidents and trends were reported: a supply-chain compromise of CPUID that swapped CPU‑Z and HWMonitor downloads to distribute malware; thousands of Rockwell Automation PLCs exposed and linked to Iranian‑attributed attacks against U.S. industrial networks; Smart Slider 3 Pro update system hijacked to push backdoored WordPress/Joomla builds; new VENOM phishing-as-a-service targeting C‑suite Microsoft credentials; a Lua-based LucidRook malware
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- a7f91f80b2fadad0c2f6aa651f94374807a4f321f2b40b02673c31b5a8f69697
- Enrichment time
- 2026-04-12T01:23:34Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.