惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
Hugging Face - Blog
Hugging Face - Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
人人都是产品经理
人人都是产品经理
Microsoft Azure Blog
Microsoft Azure Blog
Engineering at Meta
Engineering at Meta
B
Blog RSS Feed
大猫的无限游戏
大猫的无限游戏
博客园_首页
雷峰网
雷峰网
V
Visual Studio Blog
爱范儿
爱范儿
A
About on SuperTechFans
量子位
N
Netflix TechBlog - Medium
Microsoft Security Blog
Microsoft Security Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
MongoDB | Blog
MongoDB | Blog
U
Unit 42
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
月光博客
月光博客
S
SegmentFault 最新的问题
J
Java Code Geeks
H
Hackread – Cybersecurity News, Data Breaches, AI and More

www.infosecurity-magazine.com

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies STX RAT Targets Finance Sector With Advanced Stealth Tactics Bitcoin Depot Reports $3.6m Crypto Theft After System Breach Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs Google Warns of New Threat Group Targeting BPOs and Helpdesks Google API Keys Quietly Gain Access to Gemini on Android Devices Critical Vulnerability in Ninja Forms Exposes WordPress Sites Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs New 'Storm' Infostealer Remotely Decrypts Stolen Credentials NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts Apple Expands iOS 18 Security Updates Amid DarkSword Threat Researchers Observe Sub-One-Hour Ransomware Attacks GitHub Used as Covert Channel in Multi-Stage Malware Campaign Most CNI Firms Face Up to £5m in Downtime from OT Attacks Google Introduces Android Dev Verification Amid Openness Debate New Venom Stealer MaaS Platform Automates Continuous Data Theft Chinese Hackers Target European Governments in Espionage Campaigns
US Court Hands Crypto Scammer 20 Years in $73m Case
2026-02-11 · via www.infosecurity-magazine.com

Photo of Phil Muncaster

A Chinese national has been sentenced to two decades behind bars for his part in a global crypto-investment fraud scheme which cost victims over $73m.

Daren Li, 42, who is a dual national of China and tiny Caribbean state St. Kitts and Nevis, was sentenced by a Californian court in absentia, after cutting off his electronic tag and disappearing in December 2025.

In November 2024, he pleaded guilty to conspiring with others to launder funds obtained from victims through cryptocurrency scams and related fraud, according to the Department of Justice (DoJ).

At the time, he admitted tricking victims into depositing at least $73.6m into bank accounts under the control of co-conspirators and himself. An estimated $59.8m was placed in accounts associated with US shell companies that laundered the proceeds.

Read more on investment fraud: New NCA Campaign Warns Men Off Crypto Investment Scams.

Li confessed to directing his co-conspirators to open US bank accounts established by these fake companies in order to throw investigators off the scent. They would collectively monitor the wire transfers and conversion of these victim funds to crypto, the DoJ said.

A Classic Romance Baiting Scheme

The operation itself included a typical romance baiting (aka pig butchering) scheme. 

Victims were contacted through unsolicited approaches on social media, online dating sites and even cold calls. Over a period of time, the scammers would gain their trust – in some cases by engaging in romantic relationships.

When the time was right, they would direct the victims to invest in cryptocurrency trading platforms – using spoofed websites and domains to further bolster legitimacy, the DoJ said.

On other occasions, the scammers would simply approach the victims claiming to represent a tech support company. In those cases, they would force or trick the victims into sending funds via wire transfer or to the crypto trading platforms in order to remediate a non-existent computer-related issue like a malware infection.

Eight co-conspirators have pleaded guilty so far, but Li is the first to be sentenced who was directly involved in receiving victim funds.

“While technology has made it possible for people to quickly communicate with others who live oceans away, it also has made it easier for criminals to prey on innocent victims,” said first assistant US attorney Bill Essayli. “I urge the investing public to use caution and to not talk to strangers … especially ones who solicit money online.”

A UN report from 2025 warned that cyber-enabled fraud operations are expanding on an industrial scale in Southeast Asia, especially in the “vulnerable” border areas of Myanmar and Cambodia.

However, sanctions imposed by the US and UK governments appear to be having some impact. In January this year, scam marketplace Tudou Guarantee appeared to be shutting down its Telegram operations.