Money launderer linked to $230M crypto heist gets 70 months in prison
2026-04-27T13:23:29Z•e22da1ff178b2a1d3934202ce1c0e1c58c8e786623630f44baaa5dc67f7a8cfb
adtasablackfileciscocrypto-heistdata-breachdeepfake-voiceentra-passkeys','copilot-uninstall','dora-regulationextortionfirestarterftditronlinux-privilege-escalationmicrosoft-teamsmoney-launderingoutlook-outagepack2therootpackagekitshinyhunterssnow-malwareunc6692vishingwindows-updatexsszimbra
What happened
Multiple active threats and high-impact incidents reported: over 10,000 Zimbra servers are being actively exploited via a reflected XSS flaw; a new local-privilege escalation dubbed “Pack2TheRoot” against PackageKit can yield root on Linux systems; and Firestarter malware persists on Cisco ASA/FTD appliances despite updates. Threat actors remain active — UNC6692 is deploying a custom ‘Snow’ malware suite via Microsoft Teams, extortion group BlackFile is linked to vishing and data theft, and ShinyHunters threatened ADT after an confirmed breach. U.S. utility vendor Itron disclosed unauthorized
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- e22da1ff178b2a1d3934202ce1c0e1c58c8e786623630f44baaa5dc67f7a8cfb
- Enrichment time
- 2026-04-27T13:23:29Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.