{"id":12268,"date":"2026-04-21T10:04:12","date_gmt":"2026-04-21T10:04:12","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2026\/04\/21\/british-national-admits-hacking-companies-and-stealing-millions-in-virtual-currency\/"},"modified":"2026-04-21T10:04:12","modified_gmt":"2026-04-21T10:04:12","slug":"british-national-admits-hacking-companies-and-stealing-millions-in-virtual-currency","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2026\/04\/21\/british-national-admits-hacking-companies-and-stealing-millions-in-virtual-currency\/","title":{"rendered":"British National Admits Hacking Companies and Stealing Millions in Virtual Currency"},"content":{"rendered":"<p>    British National Admits Hacking Companies and Stealing Millions in Virtual Currency<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>A British man has pleaded guilty in the United States to his role in a large cybercrime scheme that used SMS phishing, company network intrusions, and SIM swapping to steal at least $1 million in virtual currency from victims across the country.<\/p>\n<p>Tyler Robert Buchanan,\u00a0of Dundee, Scotland, was admitted to conspiracy to <a href=\"https:\/\/cybersecuritynews.com\/hacker-charged\/\" target=\"_blank\" rel=\"noreferrer noopener\">commit wire fraud and aggravated identity theft<\/a>.<\/p>\n<p>U.S. prosecutors said Buchanan worked with others between September and April to target at least a dozen companies and many individual victims. He has been in federal custody since April.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-stole-millions-in-virtual-currency\"><strong>Stole Millions in Virtual Currency<\/strong><\/h2>\n<p>According to court records, the group launched large-scale <a href=\"https:\/\/cybersecuritynews.com\/imessage-smishing-attack\/\" target=\"_blank\" rel=\"noreferrer noopener\">SMS phishing campaigns, also known as smishing attacks<\/a>.<\/p>\n<p>They sent hundreds of text messages to employees at targeted companies. These messages appeared to come from the victim company or from trusted third-party IT and business process outsourcing providers.<\/p>\n<p>The texts contained links to fake login pages that appeared to be real corporate websites. When employees entered their usernames, passwords, and other personal information, the data was captured by a phishing kit controlled by the attackers.<\/p>\n<p>Prosecutors said the <a href=\"https:\/\/cybersecuritynews.com\/new-torg-grabber-stealer-moves-from-telegram\/\" target=\"_blank\" rel=\"noreferrer noopener\">stolen credentials were then sent to a Telegram channel<\/a> administered by Buchanan and another co-conspirator. Using these credentials, the attackers accessed employee accounts and company systems.<\/p>\n<p>They stole sensitive information, including confidential business files, intellectual property, names, email addresses, telephone numbers, and account access data.<\/p>\n<p>Buchanan later admitted that investigators found files linked to many victim companies at his residence in Scotland.<\/p>\n<p>Authorities said the stolen company data helped the group identify individuals with valuable holdings of virtual currency. Buchanan and his co-conspirators then moved to compromise those personal accounts and digital wallets.<\/p>\n<p>To bypass security controls, the group used <a href=\"https:\/\/cybersecuritynews.com\/sim-swapping-protection-esim\/\" target=\"_blank\" rel=\"noreferrer noopener\">SIM swapping<\/a>. In these attacks, a criminal convinces or tricks a mobile carrier into porting a victim\u2019s phone number to a SIM card under the attacker\u2019s control.<\/p>\n<p>Once the number is transferred, the attacker can intercept one-time passcodes and <a href=\"https:\/\/cybersecuritynews.com\/new-telegram-phishing-attack-abuses-authentication-workflows\/\" target=\"_blank\" rel=\"noreferrer noopener\">SMS-based two-factor authentication messages, allowing access to protected accounts.<\/a><\/p>\n<p>Investigators found additional evidence on a device at Buchanan\u2019s home, including names and addresses of victims, cryptocurrency seed phrases, and login details for at least one victim\u2019s account.<\/p>\n<p>Buchanan admitted the conspiracy stole at least a million in virtual assets from victims in the United States.<\/p>\n<p><a href=\"https:\/\/www.justice.gov\/usao-cdca\/pr\/british-national-pleads-guilty-hacking-companies-and-stealing-least-8-million-virtual\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">U.S. District Judge John W. Holcomb has scheduled sentencing<\/a> for August. Buchanan faces a maximum sentence of years in federal prison.<\/p>\n<p>One co-conspirator, Noah Michael Urban of Florida, previously received a\u00a0one-year federal prison sentence and was ordered to pay million in restitution.<\/p>\n<p>Three other defendants still face charges. The FBI investigated the case with help from international and domestic law enforcement partners, including Police Scotland and authorities in Spain.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/british-national-stealing-millions-in-virtual-currency\/\">British National Admits Hacking Companies and Stealing Millions in Virtual Currency<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Abinaya<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/british-national-stealing-millions-in-virtual-currency\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>British National Admits Hacking Companies and Stealing Millions in Virtual Currency A British man has pleaded guilty in the United States to his role in a large cybercrime scheme that used SMS phishing, company network intrusions, and SIM swapping to steal at least $1 million in virtual currency from victims across the country. Tyler Robert [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[282,129,63],"tags":[130],"class_list":["post-12268","post","type-post","status-publish","format-standard","hentry","category-cryptocurrency","category-cyber-security","category-cyber-security-news","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12268"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=12268"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/12268\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=12268"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=12268"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=12268"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}