Third US Security Expert Admits Helping Ransomware Gang
2026-04-22T07:24:09Z•c8863773390407c9ff2bc89a36499c01e1e1b6d4e09087f11606b16ccd818a36
BlackCatCISA-KEVCiscoKelp-DAOKenticoLayerZero','RPC-compromise','DDoS','Lantronix','Silex','OT','ICSLoadMasterMOVEitNorth-KoreaOS-command-injectionP4PerforceWAF-bypassZimbraapp-store-malwarecrypto-heistcrypto-malwaredata-breachdata-exposurehealthcare-breachinsider-threatprivate-keysransomwareremote-code-executionseed-phrase-theft
What happened
Collection of SecurityWeek reports covering multiple high-risk incidents and vulnerabilities: a U.S. ransomware negotiator (Angelo Martino) pleaded guilty to assisting the BlackCat gang (insider threat); dozens of malicious crypto apps impersonating wallets landed in the Apple App Store and can steal recovery phrases/private keys; researcher found ~1,500 unsecured Perforce (P4) instances exposing files; Progress released patches for multiple MOVEit WAF and LoadMaster flaws enabling remote code execution, OS command injection and WAF-bypass; CISA expanded its KEV catalog with eight flaws (five已
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- c8863773390407c9ff2bc89a36499c01e1e1b6d4e09087f11606b16ccd818a36
- Enrichment time
- 2026-04-22T07:24:09Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.