Russian Ransomware Operator Pleads Guilty in US
2026-03-05T13:24:17Z•9d767e066433a409f99d49a9928c9e8a974757de5016a271354efa2416a93f83
CVE-2026-20122CVE-2026-201282FAASABeazleyCatalyst SD-WANCiscoCorunaEvgenii PtitsynFMCFTDLeakBaseLexisNexisTycoonZurichcredential-marketplacecyberinsurancedata-breachexploit-kitexploited-in-the-wildextraditionfunding_recapurediOSnation-statepatchesphishing-as-a-serviceransomware
What happened
SecurityWeek roundup (Mar 4–5, 2026): Russian ransomware operator Evgenii Ptitsyn was extradited from South Korea and pleaded guilty in the U.S.; Cisco warns additional Catalyst SD‑WAN vulnerabilities are being exploited in the wild and has patched multiple products (including 48 vulnerabilities across ASA, Secure FMC, and Secure FTD); the nation‑state iOS exploit kit “Coruna” is now powering broader criminal campaigns; the Tycoon 2FA phishing‑as‑a‑service platform was dismantled; LeakBase credential marketplace was shut down and suspects arrested; a new LexisNexis breach reportedly exposed ~2
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 9d767e066433a409f99d49a9928c9e8a974757de5016a271354efa2416a93f83
- Enrichment time
- 2026-03-05T13:24:17Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.