‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty
2026-04-29T19:23:32Z•28c86c1c33853977448c213e69396f99371ca2bdb4ce1ec04202b2e3d96a2c12
Adobe Reader RCEAisuruBlueHammerCanisterWormDaniil ShchukinGandCrabGoogle Chrome zero-dayIran-targetingKimwolf','JackSkid','Mossad'Microsoft Office token theftMicrosoft Patch TuesdayREvilRussia-linked actorsSMS phishingScattered SpiderSharePoint zero-dayTylerbUNKNWindows Defenderaggravated identity theftcloud service wormdoxingrouter compromisewiperwire fraud
What happened
Multiple high-impact cyber incidents and widespread vulnerabilities reported: a senior ‘‘Scattered Spider’’ member pleaded guilty for SMS-based phishing that enabled breaches of major tech firms and large crypto thefts; Microsoft’s April 2026 Patch Tuesday fixed 167 flaws (including a SharePoint zero-day and a disclosed Windows Defender issue dubbed “BlueHammer”), while Chrome and Adobe pushed emergency zero-day/active-exploit fixes. Russia-linked actors exploited known router flaws to mass-harvest Microsoft Office authentication tokens from >18,000 networks. Law enforcement disrupted four IoT
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 28c86c1c33853977448c213e69396f99371ca2bdb4ce1ec04202b2e3d96a2c12
- Enrichment time
- 2026-04-29T19:23:32Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.