Money launderer linked to $230M crypto heist gets 70 months in prison

2026-04-27T13:23:29Ze22da1ff178b2a1d3934202ce1c0e1c58c8e786623630f44baaa5dc67f7a8cfb
adtasablackfileciscocrypto-heistdata-breachdeepfake-voiceentra-passkeys','copilot-uninstall','dora-regulationextortionfirestarterftditronlinux-privilege-escalationmicrosoft-teamsmoney-launderingoutlook-outagepack2therootpackagekitshinyhunterssnow-malwareunc6692vishingwindows-updatexsszimbra

What happened

Multiple active threats and high-impact incidents reported: over 10,000 Zimbra servers are being actively exploited via a reflected XSS flaw; a new local-privilege escalation dubbed “Pack2TheRoot” against PackageKit can yield root on Linux systems; and Firestarter malware persists on Cisco ASA/FTD appliances despite updates. Threat actors remain active — UNC6692 is deploying a custom ‘Snow’ malware suite via Microsoft Teams, extortion group BlackFile is linked to vishing and data theft, and ShinyHunters threatened ADT after an confirmed breach. U.S. utility vendor Itron disclosed unauthorized

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
e22da1ff178b2a1d3934202ce1c0e1c58c8e786623630f44baaa5dc67f7a8cfb
Enrichment time
2026-04-27T13:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.