‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty

2026-04-23T13:23:31Zf76a95abe2ef4bfc13907df19b77200e232c0821fc2dd9857f2a9803017e41b8
Adobe ReaderBlueHammerCanisterWormDaniil ShchukinGandCrabGoogle Chrome zero-dayIranMicrosoft Office tokensMicrosoft Patch TuesdayREvilRussiaSIM swappingScattered SpiderSharePoint ServerStryker incident','IoT botnets','Aisuru','Kimwolf','JackSkid','MTylerbUNKNWindows Defendercryptocurrency theftidentity theftphishingrouter vulnerabilitiesstate-sponsoredwiperzero-day

What happened

Multiple KrebsOnSecurity posts in Mar–Apr 2026 highlight a wave of high-impact cyber activity: law enforcement action against Scattered Spider (a senior member pleaded guilty for SIM/text-phishing-enabled intrusions and crypto theft); large-scale exploitation and disclosure of multiple zero-days and hundreds of Microsoft vulnerabilities (including a SharePoint Server zero-day and a Windows Defender issue dubbed “BlueHammer”); Google Chrome and Adobe emergency fixes; Russian state-linked campaigns abusing legacy router flaws to harvest Microsoft Office authentication tokens across ~18,000+ nets

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
f76a95abe2ef4bfc13907df19b77200e232c0821fc2dd9857f2a9803017e41b8
Enrichment time
2026-04-23T13:23:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · ‘Scattered Spider’ Member ‘Tylerb’ Pleads Guilty · Baitaphish