Ransomware negotiator caught secretly assisting BlackCat extortion scheme

2026-04-22T02:51:41Zd3364f53bfe2dbad92b264f0bc3adb9791f5acc9a59edef68d05d03f29b508a1
AI-supply-chainAnthropicBlackCatBlueskyCISACiscoClaude-MythosContext.aiDDoSDeFiJetBrains-TeamCityKelp-DAOKenticoLayerZeroLazarusPaperCutQuest-KACESynacorVercelcrypto-theftinsider-threatknown-exploited-vulnerabilitiespro-Iran-actorransomwarethird-party-risk

What happened

Recent reporting highlights a wave of high-impact cyber incidents and emerging risks: a former ransomware negotiator pleaded guilty to secretly assisting the BlackCat extortion group; North Korea–linked Lazarus stole $290M from Kelp DAO via LayerZero (with a second $95M attempt stopped); and a third‑party AI compromise of Context.ai led to a Vercel breach exposing limited internal environments. Other notable items include CISA adding multiple vendor flaws to its Known Exploited Vulnerabilities catalog (Cisco Catalyst, Kentico Xperience, PaperCut NG/MF, Synacor ZCS, Quest KACE SMA, JetBrains ·

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
d3364f53bfe2dbad92b264f0bc3adb9791f5acc9a59edef68d05d03f29b508a1
Enrichment time
2026-04-22T02:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.