‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

2026-04-29T19:23:32Z28c86c1c33853977448c213e69396f99371ca2bdb4ce1ec04202b2e3d96a2c12
Adobe Reader RCEAisuruBlueHammerCanisterWormDaniil ShchukinGandCrabGoogle Chrome zero-dayIran-targetingKimwolf','JackSkid','Mossad'Microsoft Office token theftMicrosoft Patch TuesdayREvilRussia-linked actorsSMS phishingScattered SpiderSharePoint zero-dayTylerbUNKNWindows Defenderaggravated identity theftcloud service wormdoxingrouter compromisewiperwire fraud

What happened

Multiple high-impact cyber incidents and widespread vulnerabilities reported: a senior ‘‘Scattered Spider’’ member pleaded guilty for SMS-based phishing that enabled breaches of major tech firms and large crypto thefts; Microsoft’s April 2026 Patch Tuesday fixed 167 flaws (including a SharePoint zero-day and a disclosed Windows Defender issue dubbed “BlueHammer”), while Chrome and Adobe pushed emergency zero-day/active-exploit fixes. Russia-linked actors exploited known router flaws to mass-harvest Microsoft Office authentication tokens from >18,000 networks. Law enforcement disrupted four IoT

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
28c86c1c33853977448c213e69396f99371ca2bdb4ce1ec04202b2e3d96a2c12
Enrichment time
2026-04-29T19:23:32Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · ‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty · Baitaphish