Third US Security Expert Admits Helping Ransomware Gang

2026-04-22T07:24:09Zc8863773390407c9ff2bc89a36499c01e1e1b6d4e09087f11606b16ccd818a36
BlackCatCISA-KEVCiscoKelp-DAOKenticoLayerZero','RPC-compromise','DDoS','Lantronix','Silex','OT','ICSLoadMasterMOVEitNorth-KoreaOS-command-injectionP4PerforceWAF-bypassZimbraapp-store-malwarecrypto-heistcrypto-malwaredata-breachdata-exposurehealthcare-breachinsider-threatprivate-keysransomwareremote-code-executionseed-phrase-theft

What happened

Collection of SecurityWeek reports covering multiple high-risk incidents and vulnerabilities: a U.S. ransomware negotiator (Angelo Martino) pleaded guilty to assisting the BlackCat gang (insider threat); dozens of malicious crypto apps impersonating wallets landed in the Apple App Store and can steal recovery phrases/private keys; researcher found ~1,500 unsecured Perforce (P4) instances exposing files; Progress released patches for multiple MOVEit WAF and LoadMaster flaws enabling remote code execution, OS command injection and WAF-bypass; CISA expanded its KEV catalog with eight flaws (five已

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
c8863773390407c9ff2bc89a36499c01e1e1b6d4e09087f11606b16ccd818a36
Enrichment time
2026-04-22T07:24:09Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.