En bref
A senior member of the Scattered Spider cybercrime group has pleaded guilty to orchestrating SMS phishing attacks that led to SIM swapping thefts, stealing at least $8 million in cryptocurrency from U.S. victims. Tyler Robert Buchanan, 24,...
Comment ca fonctionne
A senior member of the Scattered Spider cybercrime group has pleaded guilty to orchestrating SMS phishing attacks that led to SIM swapping thefts, stealing at least $8 million in cryptocurrency from U.S. victims. Tyler Robert Buchanan, 24,...
Signaux d'alerte
- : Unexpected SMS requesting verification codes, password resets, or urgent account action Texts impersonating tech companies, banks, or cryptocurrency exchanges with suspicious links Requests for one time passcodes or authentication tokens via text message
Que faire
- 1Use authenticator apps (Google Authenticator, Authy) instead of SMS based 2FA — SMS codes can be intercepted via SIM swapping
- 2Enable SIM swap protection with your carrier — require a PIN or in person verification for number transfers
- 3Never share authentication codes — legitimate services will never ask you to read back a code or enter it on a website linked from a text The group targeted ind
Source
krebs
Source verifiee par Mythos Forensic Team
https://krebsonsecurity.com/2026/04/scattered-spider-member-tylerb-pleads-guilty/FAQ
Scattered Spider Member Tylerb Pleads Guilty: SIM Swapping and SMS Phishing Scam Hits Consumers est une vraie arnaque ?
Oui. Traitez le message, l'appel ou la demande de paiement comme suspect jusqu'a verification via un canal officiel.
Quels sont les premiers signaux ?
: Unexpected SMS requesting verification codes, password resets, or urgent account action Texts impersonating tech companies, banks, or cryptocurrency exchanges with suspicious links Requests for one time passcodes or authentication tokens via text message
Que faire en premier ?
Use authenticator apps (Google Authenticator, Authy) instead of SMS based 2FA — SMS codes can be intercepted via SIM swapping; Enable SIM swap protection with your carrier — require a PIN or in person verification for number transfers; Never share authentication codes — legitimate services will never ask you to read back a code or enter it on a website linked from a text The group targeted ind
LegalAudit peut-il verifier mon cas ?
Oui. Lancez le chat gratuit et collez le message, le lien, l'expediteur ou les details de paiement.