Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
U.K. Arrests Two Teen Scattered Spider Hackers Linked to August 2024 TfL Cyber Attack

U.K. Arrests Two Teen Scattered Spider Hackers Linked to August 2024 TfL Cyber Attack

Posted on September 19, 2025September 19, 2025 By CWS

Sep 19, 2025Ravie LakshmananRansomware / Cybercrime
Regulation enforcement authorities within the U.Okay. have arrested two teen members of the Scattered Spider hacking group in reference to their alleged participation in an August 2024 cyber assault focusing on Transport for London (TfL), the town’s public transportation company.
Thalha Jubair (aka EarthtoStar, Brad, Austin, and @autistic), 19, from East London and Owen Flowers, 18, from Walsall, West Midlands had been arrested at their dwelling addresses on Tuesday, the Nationwide Crime Company (NCA) stated. They’re 19 and 18, respectively.

It is price noting that Flowers was initially arrested for his alleged involvement within the TfL assault in September 2024, however was subsequently launched on bail. The company stated it discovered proof of Flowers focusing on U.S. healthcare corporations, and that he has additionally been charged with conspiring with others to infiltrate and injury the networks of SSM Well being Care Company and Sutter Well being.

Jubair has additionally been charged beneath the Regulation of Investigatory Powers Act (RIPA) 2000 for failing to give up PINs and passwords for gadgets seized by regulation enforcement from him on March 19, 2025.
“This assault brought about vital disruption and hundreds of thousands in losses to TfL, a part of the UK’s crucial nationwide infrastructure,” Deputy Director Paul Foster, head of the NCA’s Nationwide Cyber Crime Unit, stated. “Earlier this yr, the NCA warned of a rise within the risk from cyber criminals primarily based within the U.Okay. and different English-speaking international locations, of which Scattered Spider is a transparent instance.”
In tandem, the U.S. Division of Justice (DoJ) unsealed a criticism charging Jubair with conspiracies to commit laptop fraud, wire fraud, and cash laundering in relation to no less than 120 laptop community intrusions and extorting 47 U.S. entities from Could 2022 to September 2025.
These assaults concerned using social engineering methods to realize unauthorized entry to the goal networks, after which leveraging that entry to steal and encrypt info, and demand ransom from victims in return for regaining management and stopping the leak of the exfiltrated information.
In keeping with the criticism, victims paid no less than $115,000,000 in ransom funds. The incidents, the DoJ added, brought about widespread disruption to U.S. companies and organizations, together with crucial infrastructure and the federal court docket system, in October 2024 and January 2025.

In July 2024, the DoJ stated regulation enforcement seized cryptocurrency wallets on a server allegedly managed by Jubair and confiscated digital belongings price about $36 million on the time. Jubair can also be stated to have transferred a portion of the proceeds that originated from one of many victims, price about $8.4 million on the time, to a different pockets.

Jubair has been charged with laptop fraud conspiracy, two counts of laptop fraud, wire fraud conspiracy, two counts of wire fraud, and cash laundering conspiracy. If convicted, he faces a most penalty of 95 years in jail.
“Jubair went to nice and complex lengths to maintain himself nameless whereas he and his felony associates continued to assault these victims and extort tens of hundreds of thousands of {dollars} in ransom funds,” stated Alina Habba, Performing U.S. Legal professional and Particular Legal professional for the District of New Jersey.

The Hacker News Tags:Arrests, Attack, August, Cyber, Hackers, Linked, Scattered, Spider, Teen, TfL, U.K

Post navigation

Previous Post: CISA Warns of Two Malware Strains Exploiting Ivanti EPMM CVE-2025-4427 and CVE-2025-4428
Next Post: Unpatched Vulnerabilities Expose Novakon HMIs to Remote Hacking

Related Posts

Bitfinex Hack Convict Ilya Lichtenstein Released Early Under U.S. First Step Act Bitfinex Hack Convict Ilya Lichtenstein Released Early Under U.S. First Step Act The Hacker News
Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of Disclosure Threat Actors Weaponize HexStrike AI to Exploit Citrix Flaws Within a Week of Disclosure The Hacker News
China-Linked UAT-7290 Targets Telecoms with Linux Malware and ORB Nodes China-Linked UAT-7290 Targets Telecoms with Linux Malware and ORB Nodes The Hacker News
AI Becomes Russia’s New Cyber Weapon in War on Ukraine AI Becomes Russia’s New Cyber Weapon in War on Ukraine The Hacker News
N. Korean Hackers Used Job Lures, Cloud Account Access, and Malware to Steal Millions in Crypto N. Korean Hackers Used Job Lures, Cloud Account Access, and Malware to Steal Millions in Crypto The Hacker News
Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users Notepad++ Official Update Mechanism Hijacked to Deliver Malware to Select Users The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Researchers Find 341 Malicious ClawHub Skills Stealing Data from OpenClaw Users
  • DynoWiper Data-Wiping Malware Attacking Energy Companies to Destroy Data
  • 30 Wind and Solar Farms in Poland Faced Coordinated Cyberattacks
  • OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link
  • Microsoft Begins NTLM Phase-Out With Three-Stage Plan to Move Windows to Kerberos

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Researchers Find 341 Malicious ClawHub Skills Stealing Data from OpenClaw Users
  • DynoWiper Data-Wiping Malware Attacking Energy Companies to Destroy Data
  • 30 Wind and Solar Farms in Poland Faced Coordinated Cyberattacks
  • OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link
  • Microsoft Begins NTLM Phase-Out With Three-Stage Plan to Move Windows to Kerberos

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark