SIM-Swapper, Scattered Spider Hacker Gets 10 Years - A 20-year-old Florida man at the center of a prolific cybercrime group known as “S... https://krebsonsecurity.com/2025/08/sim-swapper-scattered-spider-hacker-gets-10-years/ #judgeharveye.schlesinger #neer-do-wellnews #noahmichaelurban #scatteredspider #news4jax.com #scatterswine #simswapping #mailchimp #starfraud #doordash #lastpass #t-mobile #kingbob #oktapus #unc3944 #thecom #twilio #plex #sosa
SIM-Swapper, Scattered Spider Hacker Gets 10 Years – Krebs on Security

SIM-Swapper, Scattered Spider Hacker Gets 10 Years – Krebs on Security

Feds Charge Five Men in ‘Scattered Spider’ Roundup – Krebs on Security

Feds Charge Five Men in ‘Scattered Spider’ Roundup – Krebs on Security

#Coinbase says some employees’ information stolen by hackers-TechCrunch

Coinbase has confirmed that it was briefly compromised by same attackers that targeted Twilio, Cloudflare, DoorDash, & more than a hundred other orgs last year

In a post-mortem of the incident, Coinbase said that the so-called ‘0ktapus’ hackers stole the login credentials of one of its employees in an attempt to remotely gain access
#oktapus

https://techcrunch.com/2023/02/21/0ktapus-coinbase-stolen-employees-information/

TechCrunch is part of the Yahoo family of brands

Would You Accept an Inconvenience To Prevent a Data Breach?

Addressing the rise in credential and session compromise
~~~~~~
by Teri Radichel | Jan, 2023
#cloudsecurity #iam #mfa #separationofduties #securityarchitecture #circleci #oktapus

https://medium.com/cloud-security/would-you-accept-an-inconvenience-to-prevent-a-data-breach-f0df9de628e9

Would You Accept an Inconvenience To Prevent a Data Breach?

In my last post, I wrote about AWS Service Control Policies that can be leveraged to create organization-wide policies. These types of policies, when leveraged properly can reduce the chance of…

Cloud Security

AWS CLI for an SSO User
ACM.127 AWS CLI commands with an AWS SSO (AWS Identity Center) session — threat modeling and attack surface
~~~~~~~~~
by Teri Radichel | Jan 9, 2023
#cloudsecurity #sso #iamidentitycenter #iam #phishing #oktapus #cybersecurity #aws

https://medium.com/cloud-security/aws-cli-for-an-sso-user-156893beec44

AWS CLI for an SSO User - Cloud Security - Medium

In my last post I showed you how we might add a new group and permission set in AWS SSO to manage domain names in a separate AWS account. Now let’s say we want to grant that user access to use the…

Cloud Security

Oktapus:
Reviewing one of the most dangerous attacks in 2022 to design an authentication system less susceptible to attack
~~~~~~~~~~~~~~
by Teri Radichel | Jan. 4, 2023
#cloudsecurity #databreach #oktapus #mfa #encryption #networksecurity

https://medium.com/cloud-security/oktapus-7a58e4dbc1d8

Oktapus - Cloud Security - Medium

It’s always a good idea to review past data breaches like I did in the last post to determine what happened and how you can prevent a similar attack in your own organization. In my last post, I wrote…

Cloud Security