‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty
2026-04-23T07:23:35Z•487809a383305314ad383d06a743a98b2b2add2e63591834a02737171df08649
Adobe Reader RCEBlueHammerCanisterWormChrome zero-dayDaniil ShchukinGandCrabIoT botnet takedown/Aisuru/Kimwolf/JackSkid/Mossad (>3M devices)Iran-targetingMicrosoftPatch TuesdayREvilRussian state actorsSMS phishingScattered SpiderSharePoint zero-dayTylerbUNKNWindows Defenderaccount takeovercloud misconfigurationcryptocurrency theftmilitary intelligencerouter compromisetoken theftwiper
What happened
This KrebsOnSecurity feed covers multiple high-impact incidents: a senior Scattered Spider member (Tyler Robert Buchanan) pleaded guilty to SMS-based phishing and aggravated identity theft tied to intrusions of major tech firms and theft of cryptocurrency; Microsoft’s April Patch Tuesday fixed 167 flaws (including a SharePoint Server zero-day and a Windows Defender issue dubbed “BlueHammer”), while Chrome and Adobe issued emergency fixes for actively exploited zero-days and RCEs; Russian military-linked actors exploited known router vulnerabilities to steal Microsoft Office authentication TOKs
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- krebs_on_security
- Record identifier
- 487809a383305314ad383d06a743a98b2b2add2e63591834a02737171df08649
- Enrichment time
- 2026-04-23T07:23:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.