thehackernews.com
Scattered Spider Hijacks VMware ESXi to Deploy Ransomware on Critical U.S. Infrastructure
Scattered Spider targets VMware ESXi in fast, stealthy ransomware attacks across U.S. retail and airline sectors.
#ScatteredSpider is an active hashtag on Bluesky. In the last 30 days, 12 people shared 20 posts with it — around 1 a day. Activity is down 50% versus the previous week, peaking on Jul 17 with 5 posts.
Tags most often used together with #ScatteredSpider.
thehackernews.com
Scattered Spider Hijacks VMware ESXi to Deploy Ransomware on Critical U.S. Infrastructure
Scattered Spider targets VMware ESXi in fast, stealthy ransomware attacks across U.S. retail and airline sectors.
music.youtube.com
Scattered Spider
YouTube video by UwU Underground - Topic
hackread.com
How Scattered Spider Used Fake Calls to Breach Clorox via Cognizant
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
Scattered Spider Launching Ransomware on Hijacked VMware Systems, Google
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
securityboulevard.com
Huge Food Wholesaler Paralyzed by Hack — is it Scattered Spider Again?
UNFInished business: We were warned this would happen. And now here we are.
hackread.com
Scattered LAPSUS$ Hunters Claim Salesforce Breach, 1B Records, 39 Firms Listed
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
Scattered Spider Hacker Noah Michael Urban Jailed for 10 Years
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
Scattered Spider Aims at US Insurers After UK Retail Hit, Google Warns
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
securityboulevard.com
Farmers Group Loses 1.111M PII Rows: It’s Salesforce Again
ShinyHunters Hunt Again: Scattered Spider claims another Salesforce instance—albeit three months ago.
securityboulevard.com
4 Arrests in Dawn Raid of Scattered-Spider Suspects
Alleged arachnid arrests: Three teenage males and a young woman hauled away by cops, suspected of hacking huge retailers.
securityboulevard.com
Warning to US Retail: ‘Scattered Spider’ Targets YOU (with DragonForce Ransomware)
Arachnid alarm: Three major British retailers recently attacked, resulting in huge damage. Now we see the self-same scum spotlighting stores in the States.
webrecord.media
Finlandiya’da yakalanan "Scattered Spider" üyesi, ABD'ye iade edildi — Webrecord
2021 yılında kurulan Webrecord Media, siber güvenlik alanındaki en güncel ve kritik gelişmeleri kaynaklarıyla birlikte okuyucularına sunan bir haber platformudur.
webrecord.media
Londra ulaşım ağını hackleyen "Scattered Spider" üyeleri suçunu itiraf etti — Webrecord
2021 yılında kurulan Webrecord Media, siber güvenlik alanındaki en güncel ve kritik gelişmeleri kaynaklarıyla birlikte okuyucularına sunan bir haber platformudur.
www.hendryadrian.com
Leading members of Scattered Spider sentenced in UK to 66 months in jail
Two young men, Thalha Jubair and Owen Flowers, were sentenced to 66 months in jail for a 2024 cyberattack that disrupted Transport for London operations and drew major attention from U.K. and U.S. authorities. Investigators linked both to Scattered Spider and said Jubair was tied to extensive extortion activity, while officials described the case as a major disruption to the group’s criminal activity. #TransportforLondon #ThalhaJubair #OwenFlowers #ScatteredSpider #TheCom
commons.now
Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 Staff
Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in pe…
dlvr.it
UK Court Sentences Two Hackers to 5.5 Years for Transport for London Cyberattack That Caused £29 Million in Damages
Two hackers have been sentenced to five and a half years in prison each for carrying out the 2024 cyberattack on Transport for London (TfL), in what the UK's National Crime Agency (NCA) has described as the country's largest cybercrime prosecution to date. Owen Flowers, 18, and Thalha Jubair, 20, received their sentences at Woolwich Crown Court on July 16, 2026. The duo had pleaded guilty on June 22, 2026, to an offence under Section 3ZA of the Computer Misuse Act 1990, acknowledging they acted recklessly and created a significant risk of serious harm to public welfare. The cyberattack, which lasted from August 31 to September 3, 2024, severely disrupted TfL's operations. Around 148 systems were taken offline, forcing all 27,000 employees to report to offices in person to reset their passwords. Authorities estimate the attack resulted in approximately £29 million in financial losses and recovery costs. Transport for London, which manages nearly 9 million passenger journeys daily, experienced widespread service disruptions. Dial-a-Ride services for vulnerable passengers became unavailable, digital payment systems were affected, concessionary travel card issuance was interrupted, Oyster photocard applications were suspended, and refunds faced significant delays. The breach also exposed customer information, including names, email addresses, and, where stored, home addresses. Additionally, Oyster refund records containing bank account details and sort codes of approximately 5,000 customers may have been compromised. According to prosecutors, messages exchanged between the defendants suggested they intended to erase their access before leaving the network. Investigators noted that a complete shutdown of TfL's systems could have caused economic losses of up to £56 billion. However, those damages were avoided after TfL proactively disconnected its own network to contain the intrusion. Flowers was arrested on September 6, 2024, just days after the TfL breach ended. The NCA said officers found him actively targeting two U.S. healthcare organisations—SSM Health Care Corporation and Sutter Health—during the arrest. Authorities recovered multiple digital devices, including laptops, desktop computers, hard drives, and USB storage devices. Evidence included screenshots showing access to TfL infrastructure and videos allegedly recorded by Flowers documenting Jubair's activity inside TfL systems. Investigators also uncovered Telegram conversations and an online collaboration platform used during the attacks. The prosecution established that Flowers had access to the remote infrastructure used to launch all three cyberattacks, while evidence connecting Jubair to the TfL breach was obtained through international law enforcement cooperation. Flowers also admitted to two additional cybercrime offences linked to attacks on the U.S. healthcare organisations. Prosecutors stated that he threatened to lock down healthcare systems while acknowledging in online conversations that it "might kill some 90-year-old on life support." Authorities said his arrest prevented those attacks from progressing further. The NCA identified both individuals as senior members of the cybercrime group Scattered Spider, also known as Octo Tempest, UNC3944, and 0ktapus. However, the Crown Prosecution Service (CPS) stated only that the defendants had claimed affiliation with a group investigators believe was responsible for hundreds of cyberattacks between 2022 and 2025. The FBI has linked the group to data extortion, SIM swapping, and social engineering campaigns. While authorities have not disclosed the exact method used to compromise TfL's network, Google has recommended strengthening identity verification procedures during password resets, device enrolment, and MFA changes to defend against such attacks. Paul Foster, head of the NCA's National Cyber Crime Unit, urged organisations to contact law enforcement as soon as they detect cyber incidents, noting that the successful prosecution would likely not have been possible without TfL's prompt reporting. Following the sentencing, the City of London Police also renewed calls for the introduction of Cyber Crime Risk Orders, which would allow courts to impose restrictions on offenders' access to digital devices, online services, and technology based on the level of cyber risk they pose. Commander Ollie Shaw described the proposed measures as a "digital prison" for cyber offenders. The two convicted hackers were 17 and 18 years old when the offences were committed.
www.bleepingcomputer.com
Scattered Spider members behind TfL hack get five years in prison
Two leading members of the Scattered Spider cybercrime collective were sentenced to five years and six months in prison each for hacking Transport for London (TfL) in 2024. [...]
www.hendryadrian.com
Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack
Owen Flowers and Thalha Jubair were sentenced to five and a half years for the 2024 Transport for London hack, which disrupted 148 systems, exposed customer data, and cost TfL an estimated £29 million. Prosecutors tied the pair to Scattered Spider, while the case also highlighted related attacks on US healthcare...
www.hendryadrian.com
Two Scattered Spider Hackers Sentenced to Jail in UK
Two members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, were sentenced to five years and six months in prison in the UK for their role in the 2024 attack on Transport for London. The breach caused major disruption and £29 million in losses, and authorities say the...
www.bbc.co.uk
Teen hackers jailed after live streaming cyber attack on TfL
Owen Flowers and Thalha Jubair were convicted for their roles in the attack, which led to large costs for Transport for London.
Posts are pulled live from Bluesky and cached briefly. Posts with content labels are hidden.