‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

2026-04-23T07:23:35Z487809a383305314ad383d06a743a98b2b2add2e63591834a02737171df08649
Adobe Reader RCEBlueHammerCanisterWormChrome zero-dayDaniil ShchukinGandCrabIoT botnet takedown/Aisuru/Kimwolf/JackSkid/Mossad (>3M devices)Iran-targetingMicrosoftPatch TuesdayREvilRussian state actorsSMS phishingScattered SpiderSharePoint zero-dayTylerbUNKNWindows Defenderaccount takeovercloud misconfigurationcryptocurrency theftmilitary intelligencerouter compromisetoken theftwiper

What happened

This KrebsOnSecurity feed covers multiple high-impact incidents: a senior Scattered Spider member (Tyler Robert Buchanan) pleaded guilty to SMS-based phishing and aggravated identity theft tied to intrusions of major tech firms and theft of cryptocurrency; Microsoft’s April Patch Tuesday fixed 167 flaws (including a SharePoint Server zero-day and a Windows Defender issue dubbed “BlueHammer”), while Chrome and Adobe issued emergency fixes for actively exploited zero-days and RCEs; Russian military-linked actors exploited known router vulnerabilities to steal Microsoft Office authentication TOKs

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
487809a383305314ad383d06a743a98b2b2add2e63591834a02737171df08649
Enrichment time
2026-04-23T07:23:35Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.