:

RYDOX MARKETPLACE ADMIN PLEADS GUILTY, FACES 22 YEARS

INDUSTRY DESK■ 1 MIN READ
FRI, SEP 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A Kosovar national has pleaded guilty to operating Rydox, an illegal online marketplace that trafficked in stolen personal information, login credentials, and cybercrime tools. The admin faces up to 22 years in prison.

Rydox operated as a hub for cybercriminals, offering stolen data and tools used in fraud, identity theft, and other cybercrimes. The marketplace facilitated the sale of credit card details, login credentials, and personal information harvested from data breaches. The defendant's guilty plea marks a significant enforcement action against underground marketplaces that enable widespread financial and data crimes. Law enforcement agencies have intensified efforts to dismantle such platforms and prosecute their operators. The 22-year sentence reflects the scale and scope of the operation's impact on victims. Rydox joins a growing list of dark web marketplaces shut down through international law enforcement cooperation. The case underscores ongoing challenges in combating cybercrime infrastructure while highlighting progress in coordinating global prosecution efforts against marketplace operators.

■ SOURCES

► Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Cryptocurrency exchange Bitget disclosed a breach of its hot and warm wallets, with hackers stealing $351.6 million. The attack is attributed to suspected North Korean threat actors.

1H AGO— Security Desk

Scammers are spoofing popular invitation platforms like Evite and Paperless Post to steal personal data. The deceptive emails are convincing enough that some recipients use them as opportunities to reconnect with old contacts.

3H AGO— Security Desk

A cross-site scripting (XSS) vulnerability in the ansi2html library exposed Sourcehut users to account takeover attacks through malicious build log output. The flaw allowed attackers to inject arbitrary code into rendered logs.

7H AGO— Industry Desk

Two developers independently demonstrated that Meta's Muse AI can be prompted to download and share its entire filesystem, including system files and internal documentation. The vulnerability reportedly requires minimal effort to exploit.

14H AGO— Industry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.