‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

2026-04-22T07:23:31Z108ee16b8d702459910dc3ec4e2ff5c2488fbd5396434aa1ab1b1cbd9dc6d360
adobe-readeraisurubluehammerbotnetchrome zero-daycryptocurrency theftgoogle-chromeiotjackskidkimwolfmicrosoftmicrosoft office tokensmossadnation-statepatch-tuesdayphishingrouter exploitsrussiascattered spidersharepointsms-phishingtoken theftwindows-defenderwiper malware','canisterworm','iran','supply-chain','cloud mis-\zero-day

What happened

Multiple high-impact cyber incidents and advisories across April 2026: a senior Scattered Spider member pleaded guilty for SMS phishing-enabled intrusions and crypto theft; Microsoft’s April Patch Tuesday fixes 167 vulnerabilities (including a SharePoint zero-day and a publicly disclosed Windows Defender issue dubbed “BlueHammer”); Google Chrome and Adobe released emergency fixes for actively exploited zero-days; Russian-linked actors exploited router flaws to harvest Microsoft Office authentication tokens from >18,000 networks; law enforcement disrupted four large IoT botnets (Aisuru, Kimwolf

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
108ee16b8d702459910dc3ec4e2ff5c2488fbd5396434aa1ab1b1cbd9dc6d360
Enrichment time
2026-04-22T07:23:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · ‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty · Baitaphish