惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

量子位
I
InfoQ
人人都是产品经理
人人都是产品经理
博客园 - 三生石上(FineUI控件)
爱范儿
爱范儿
Hugging Face - Blog
Hugging Face - Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
S
SegmentFault 最新的问题
美团技术团队
小众软件
小众软件
Blog — PlanetScale
Blog — PlanetScale
Jina AI
Jina AI
aimingoo的专栏
aimingoo的专栏
H
Help Net Security
Last Week in AI
Last Week in AI
博客园_首页
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
L
LangChain Blog
云风的 BLOG
云风的 BLOG
Martin Fowler
Martin Fowler
宝玉的分享
宝玉的分享
G
Google Developers Blog
博客园 - 叶小钗
博客园 - Franky

www.infosecurity-magazine.com

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies STX RAT Targets Finance Sector With Advanced Stealth Tactics Bitcoin Depot Reports $3.6m Crypto Theft After System Breach Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs Google Warns of New Threat Group Targeting BPOs and Helpdesks Google API Keys Quietly Gain Access to Gemini on Android Devices Critical Vulnerability in Ninja Forms Exposes WordPress Sites Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs New 'Storm' Infostealer Remotely Decrypts Stolen Credentials NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts Apple Expands iOS 18 Security Updates Amid DarkSword Threat Researchers Observe Sub-One-Hour Ransomware Attacks GitHub Used as Covert Channel in Multi-Stage Malware Campaign Most CNI Firms Face Up to £5m in Downtime from OT Attacks Google Introduces Android Dev Verification Amid Openness Debate New Venom Stealer MaaS Platform Automates Continuous Data Theft Chinese Hackers Target European Governments in Espionage Campaigns
US Court Hands Crypto Scammer 20 Years in $73m Case
2026-02-11 · via www.infosecurity-magazine.com

Photo of Phil Muncaster

A Chinese national has been sentenced to two decades behind bars for his part in a global crypto-investment fraud scheme which cost victims over $73m.

Daren Li, 42, who is a dual national of China and tiny Caribbean state St. Kitts and Nevis, was sentenced by a Californian court in absentia, after cutting off his electronic tag and disappearing in December 2025.

In November 2024, he pleaded guilty to conspiring with others to launder funds obtained from victims through cryptocurrency scams and related fraud, according to the Department of Justice (DoJ).

At the time, he admitted tricking victims into depositing at least $73.6m into bank accounts under the control of co-conspirators and himself. An estimated $59.8m was placed in accounts associated with US shell companies that laundered the proceeds.

Read more on investment fraud: New NCA Campaign Warns Men Off Crypto Investment Scams.

Li confessed to directing his co-conspirators to open US bank accounts established by these fake companies in order to throw investigators off the scent. They would collectively monitor the wire transfers and conversion of these victim funds to crypto, the DoJ said.

A Classic Romance Baiting Scheme

The operation itself included a typical romance baiting (aka pig butchering) scheme. 

Victims were contacted through unsolicited approaches on social media, online dating sites and even cold calls. Over a period of time, the scammers would gain their trust – in some cases by engaging in romantic relationships.

When the time was right, they would direct the victims to invest in cryptocurrency trading platforms – using spoofed websites and domains to further bolster legitimacy, the DoJ said.

On other occasions, the scammers would simply approach the victims claiming to represent a tech support company. In those cases, they would force or trick the victims into sending funds via wire transfer or to the crypto trading platforms in order to remediate a non-existent computer-related issue like a malware infection.

Eight co-conspirators have pleaded guilty so far, but Li is the first to be sentenced who was directly involved in receiving victim funds.

“While technology has made it possible for people to quickly communicate with others who live oceans away, it also has made it easier for criminals to prey on innocent victims,” said first assistant US attorney Bill Essayli. “I urge the investing public to use caution and to not talk to strangers … especially ones who solicit money online.”

A UN report from 2025 warned that cyber-enabled fraud operations are expanding on an industrial scale in Southeast Asia, especially in the “vulnerable” border areas of Myanmar and Cambodia.

However, sanctions imposed by the US and UK governments appear to be having some impact. In January this year, scam marketplace Tudou Guarantee appeared to be shutting down its Telegram operations.