Close Menu
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks

February 5, 2026

Buhlmann Group Faces Devastating Ransomware Attack

February 5, 2026

Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses

February 5, 2026
Facebook X (Twitter) Instagram
The CISO Brief
  • Home
  • Cybercrime and Ransomware
  • Emerging Tech
  • Threat Intelligence
  • Expert Insights
  • Careers and Learning
  • Compliance
Home » Two Spiders on the Run: Suspects Arrested in UK and US
Cybercrime and Ransomware

Two Spiders on the Run: Suspects Arrested in UK and US

Staff WriterBy Staff WriterSeptember 19, 2025No Comments3 Mins Read0 Views
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email

Essential Insights

  1. Authorities in the UK and US have arrested and charged two individuals, Thalha Jubair and Owen Flowers, linked to the hacking group Scattered Spider, for cyberattacks including a disruption of Transport for London.
  2. Jubair is accused of orchestrating over 120 cyberattacks globally, extorting victims through ransom demands, and managing in excess of $36 million in cryptocurrency; he faces up to 95 years in prison.
  3. Evidence shows Flowers’ involvement in attacks on US healthcare organizations, with additional charges stemming from his earlier arrest linked to the UK’s TfL cyberattack.
  4. Despite the group’s announced retirement, cybersecurity experts suggest the hackers remain active, especially targeting the financial sector, indicating continued threat from Scattered Spider.

Key Challenge

Authorities in the United Kingdom and the United States have taken significant legal actions against two individuals believed to be part of the notorious hacking group known as Scattered Spider. Thalha Jubair, a 19-year-old from East London, and Owen Flowers, an 18-year-old from Walsall, were charged in the UK for allegedly orchestrating a cyberattack that disrupted Transport for London’s services—though it did not cause actual transportation failures. Flowers’ arrest in September 2024 connected him to the attack, and further evidence linked him to breaches in US healthcare organizations. Meanwhile, US law enforcement unsealed a complaint accusing Jubair of orchestrating over 120 cyberattacks globally between 2022 and 2025, which involved stealing, encrypting, and demanding ransom for sensitive data from various organizations, including 47 American entities. The investigation reveals Jubair controlled cryptocurrency wallets, amassing approximately $36 million in illicit funds, with him facing charges that could result in up to 95 years in prison. Despite the group’s recent announcement of retirement, cybersecurity experts remain skeptical, noting ongoing cyberattacks, particularly targeting the financial sector, indicating that these malicious activities persist beyond official claims of closure.

Risk Summary

Authorities in the UK and US have made significant arrests and charges against members of the notorious hacking group Scattered Spider, revealing the profound cyber risks they pose. The suspects, Thalha Jubair and Owen Flowers, are linked to a series of over 120 cyberattacks worldwide, including on US healthcare systems and critical infrastructure, leading to encrypted data theft and extortion totaling more than $115 million in ransom payments. These malicious activities disrupt operations, compromise sensitive information, and pose tangible threats to public safety and national security, underscoring the growing menace of organized cybercrime. Despite claims of the group’s retirement, evidence suggests ongoing activity, notably targeting financial sectors, highlighting the persistent and evolving danger cyberspace hazards present to global stability, economic security, and individual privacy.

Fix & Mitigation

When cybercriminals like the Scattered Spider suspects are identified and arrested, prompt and effective remediation becomes critical to protect sensitive information, maintain public trust, and prevent further harm. Addressing such threats swiftly helps minimize the impact of potential breaches or ongoing malicious activities.

Mitigation Measures

  • Isolate affected systems to prevent further intrusion
  • Conduct thorough investigation to determine breach scope
  • Disable compromised accounts and access points

Remediation Actions

  • Deploy security patches and updates promptly
  • Implement stronger authentication mechanisms
  • Notify affected stakeholders and authorities
  • Conduct post-incident reviews to refine security protocols

Explore More Security Insights

Stay informed on the latest Threat Intelligence and Cyberattacks.

Access world-class cyber research and guidance from IEEE.

Disclaimer: The information provided may not always be accurate or up to date. Please do your own research, as the cybersecurity landscape evolves rapidly. Intended for secondary references purposes only.

Cyberattacks-V1

arrested charged CISO Update Cybersecurity Featured MX1 Scattered Spider UK
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleRussian Hackers Unite: Kazuar Backdoor Targets Ukraine
Next Article HybridPetya Ransomware Bypasses Windows Secure Boot
Avatar photo
Staff Writer
  • Website

John Marcelli is a staff writer for the CISO Brief, with a passion for exploring and writing about the ever-evolving world of technology. From emerging trends to in-depth reviews of the latest gadgets, John stays at the forefront of innovation, delivering engaging content that informs and inspires readers. When he's not writing, he enjoys experimenting with new tech tools and diving into the digital landscape.

Related Posts

ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks

February 5, 2026

Buhlmann Group Faces Devastating Ransomware Attack

February 5, 2026

Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses

February 5, 2026

Comments are closed.

Latest Posts

ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks

February 5, 2026

Buhlmann Group Faces Devastating Ransomware Attack

February 5, 2026

Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses

February 5, 2026

Unlocking Hidden Power: Why Boards Should Care About Their ‘Boring’ Systems

February 5, 2026
Don't Miss

ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks

By Staff WriterFebruary 5, 2026

Top Highlights ShadowSyndicate, a threat group first identified in 2022, has advanced its infrastructure management…

Buhlmann Group Faces Devastating Ransomware Attack

February 5, 2026

Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses

February 5, 2026

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Recent Posts

  • ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks
  • Buhlmann Group Faces Devastating Ransomware Attack
  • Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses
  • Unlocking Hidden Power: Why Boards Should Care About Their ‘Boring’ Systems
  • Critical n8n Flaw CVE-2026-25049: Command Execution Risk via Malicious Workflows
About Us
About Us

Welcome to The CISO Brief, your trusted source for the latest news, expert insights, and developments in the cybersecurity world.

In today’s rapidly evolving digital landscape, staying informed about cyber threats, innovations, and industry trends is critical for professionals and organizations alike. At The CISO Brief, we are committed to providing timely, accurate, and insightful content that helps security leaders navigate the complexities of cybersecurity.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

ShadowSyndicate’s Server Transition Tactics in Ransomware Attacks

February 5, 2026

Buhlmann Group Faces Devastating Ransomware Attack

February 5, 2026

Hackers Exploit Decade-Old Windows Flaw to Disable Modern EDR Defenses

February 5, 2026
Most Popular

Nokia Alerts Telecoms to Rising Stealth Attacks, DDoS Surge, and Cryptography Pressures

October 8, 20259 Views

Cyberattack Cripples 34 Devices in Telecoms Using LinkedIn Lures & MINIBIKE Malware

September 19, 20259 Views

Tonic Security Secures $7 Million to Transform Cyber Risk Reduction

July 28, 20259 Views

Archives

  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025

Categories

  • Compliance
  • Cyber Updates
  • Cybercrime and Ransomware
  • Editor's pick
  • Emerging Tech
  • Events
  • Featured
  • Insights
  • Threat Intelligence
  • Uncategorized
© 2026 thecisobrief. Designed by thecisobrief.
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions

Type above and press Enter to search. Press Esc to cancel.