MonsterCloud Owner Charged with Fraud in Ransomware Decryptor Scheme
Zohar Pinhasi allegedly billed victims over $19 million while secretly paying ransomware attackers for decryptors

Key Takeaways
- MonsterCloud owner Zohar Pinhasi charged with wire fraud and conspiracy for allegedly billing victims over $19 million while secretly paying ransomware attackers for decryptors.
- The scheme involved claiming to use proprietary recovery tools while secretly obtaining decryptors from threat actors.
- The case highlights the importance of vetting incident response firms and demanding transparency in ransomware recovery.
Related Security News

FBI Arrests Suspected ShinyHunters Member Following Agency System Breach
The FBI arrested a suspect believed to be a member of the ShinyHunters extortion group, who is alleged to be involved in a recent breach of FBI systems. Director Kash Patel confirmed the arrest on Friday, marking a continued law enforcement effort to disrupt the group's operations.

Unpatched AhsayCBS Vulnerabilities Exploited in the Wild to Deploy Webshells and Cryptominers
Threat actors are exploiting two unpatched vulnerabilities in the AhsayCBS backup management platform. One vulnerability is rated critical severity and another medium severity. The exploitation has been observed in the wild and is being used to deploy webshells for persistent access and cryptocurrency miners for monetization. No patches are currently available, and the vulnerabilities remain unpatched. Affected organizations using AhsayCBS for backup management are at risk of persistent compromise and resource misuse.



