‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

2026-04-29T01:23:31Z8c5b6afe71e357a1917ad17029fe8e8c5eabc430df4266f35908b3796638876e
Adobe ReaderAisuruBlueHammerCanisterWormChrome zero-dayDDoSIoT botnetsJackSkidKimwolfMicrosoft Office tokensMicrosoft Patch TuesdayMossadRussian military intelligenceSMS phishingScattered SpiderSharePoint zero-dayTyler Robert BuchananTylerbWindows Defendercryptocurrency theftphishingremote code executionrouter vulnerabilitiestoken theftwiper malware

What happened

Collection of KrebsOnSecurity reports (Feb–Apr 2026) describing multiple high-impact cyber incidents: a senior Scattered Spider member pled guilty to SMS phishing that enabled break-ins at major tech firms and theft of tens of millions in crypto; Microsoft’s April Patch Tuesday fixed 167 vulnerabilities (including a SharePoint zero-day and a publicly disclosed Windows Defender flaw dubbed “BlueHammer”), while Chrome and Adobe issued emergency fixes for actively exploited zero-days; Russian military-linked actors harvested Microsoft Office authentication tokens from >18,000 networks by abusing/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
8c5b6afe71e357a1917ad17029fe8e8c5eabc430df4266f35908b3796638876e
Enrichment time
2026-04-29T01:23:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · ‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty · Baitaphish