Early Scattered Spider member pleads guilty to cybercrime spree

2026-09-18T20:51:35Z•c8f540f8d809af36fb6cd84ddc4d3c265126434bcc4a96cb664a84766de19730
CVE-2026-76460AI securityCisco Identity Services EngineDDoS-for-hireIranian cyber threatsNightmareStresserNorth KoreaScattered SpiderWaterPlumactively exploited vulnerabilitycritical infrastructurecrypto theftcyber decoyshoneypotsjob seeker phishinglaw enforcementmaritime cybersecurityremote code executionsoftware decoderzero-day

What happened

CyberScoop reports on multiple cybersecurity developments, including an actively exploited maximum-severity Cisco Identity Services Engine zero-day (CVE-2026-76460), a patched decoder vulnerability enabling remote code execution and access to sensitive environments, North Korean WaterPlum campaigns targeting job seekers, DDoS-for-hire infrastructure seizures, and cyber threats to critical infrastructure and maritime networks. The feed also covers a Scattered Spider member’s guilty plea and defensive guidance on cyber decoys.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cyberscoop
Record identifier
c8f540f8d809af36fb6cd84ddc4d3c265126434bcc4a96cb664a84766de19730
Enrichment time
2026-09-18T20:51:35Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.