Russian Ransomware Operator Pleads Guilty in US

2026-03-05T13:24:17Z9d767e066433a409f99d49a9928c9e8a974757de5016a271354efa2416a93f83
CVE-2026-20122CVE-2026-201282FAASABeazleyCatalyst SD-WANCiscoCorunaEvgenii PtitsynFMCFTDLeakBaseLexisNexisTycoonZurichcredential-marketplacecyberinsurancedata-breachexploit-kitexploited-in-the-wildextraditionfunding_recapurediOSnation-statepatchesphishing-as-a-serviceransomware

What happened

SecurityWeek roundup (Mar 4–5, 2026): Russian ransomware operator Evgenii Ptitsyn was extradited from South Korea and pleaded guilty in the U.S.; Cisco warns additional Catalyst SD‑WAN vulnerabilities are being exploited in the wild and has patched multiple products (including 48 vulnerabilities across ASA, Secure FMC, and Secure FTD); the nation‑state iOS exploit kit “Coruna” is now powering broader criminal campaigns; the Tycoon 2FA phishing‑as‑a‑service platform was dismantled; LeakBase credential marketplace was shut down and suspects arrested; a new LexisNexis breach reportedly exposed ~2

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
9d767e066433a409f99d49a9928c9e8a974757de5016a271354efa2416a93f83
Enrichment time
2026-03-05T13:24:17Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.