TLDR
A senior member of the Scattered Spider cybercrime group has pleaded guilty to orchestrating SMS phishing attacks that led to SIM swapping thefts, stealing at least $8 million in cryptocurrency from U.S. victims. Tyler Robert Buchanan, 24,...
Como funciona
A senior member of the Scattered Spider cybercrime group has pleaded guilty to orchestrating SMS phishing attacks that led to SIM swapping thefts, stealing at least $8 million in cryptocurrency from U.S. victims. Tyler Robert Buchanan, 24,...
Señales de alerta
- : Unexpected SMS requesting verification codes, password resets, or urgent account action Texts impersonating tech companies, banks, or cryptocurrency exchanges with suspicious links Requests for one time passcodes or authentication tokens via text message
Qué hacer
- 1Use authenticator apps (Google Authenticator, Authy) instead of SMS based 2FA — SMS codes can be intercepted via SIM swapping
- 2Enable SIM swap protection with your carrier — require a PIN or in person verification for number transfers
- 3Never share authentication codes — legitimate services will never ask you to read back a code or enter it on a website linked from a text The group targeted ind
Fuente
krebs
Fuente verificada por Mythos Forensic Team
https://krebsonsecurity.com/2026/04/scattered-spider-member-tylerb-pleads-guilty/FAQ
Es Scattered Spider Member Tylerb Pleads Guilty: SIM Swapping and SMS Phishing Scam Hits Consumers una estafa real?
Si. Trata el mensaje, la llamada o la solicitud de pago como sospechosos hasta que los verifiques por un canal oficial.
Cuales son las primeras senales?
: Unexpected SMS requesting verification codes, password resets, or urgent account action Texts impersonating tech companies, banks, or cryptocurrency exchanges with suspicious links Requests for one time passcodes or authentication tokens via text message
Que debo hacer primero?
Use authenticator apps (Google Authenticator, Authy) instead of SMS based 2FA — SMS codes can be intercepted via SIM swapping; Enable SIM swap protection with your carrier — require a PIN or in person verification for number transfers; Never share authentication codes — legitimate services will never ask you to read back a code or enter it on a website linked from a text The group targeted ind
Puede LegalAudit revisar mi caso?
Si. Abre el chat gratis y pega el mensaje, el enlace, el remitente o los datos de pago para un triage.