لم تكن «إليزابيث نيومان» سوى واجهة رقمية وهمية لشركات لندنية براقة تدير مليارات الدولارات، لكن انهيار هذه الإمبراطورية المالية لم يأتِ عبر اختراق سيبراني معقد، بل بفضل «طوق قطة بنفسجي» قاد استخبارات الإنترنت لكشف أخطر شبكة لتمويل الحوثيين.
رئيسة تنفيذية وهمية
بدأت القصة عندما حاولت شبكة مالية معقدة إخفاء هويتها خلف مديرة تنفيذية مزيفة، مستخدمة مقاطع فيديو جاهزة من الإنترنت لتأسيس منصات تداول رقمية دولية مثل (Zedcex) و(Zedxion). وبينما كانت الشبكة تروج لتحديثاتها التقنية عبر تطبيق «تيليجرام» لإغراء المستثمرين، ارتكب أحد المشغلين خطأً غير متوقع بنشر صورة عفوية لقطته البيضاء التي ترتدي طوقاً مميزاً بجرس بنفسجي.
حجر «الروزيتا» الرقمي
التقط محققو «استخبارات المصادر المفتوحة» (OSINT) هذا الخيط الاستثنائي. وعبر مطابقة زوايا الأثاث المنزلي وصورة القطة مع حسابات مهندسين وشخصيات مقربة من الحرس الثوري الإيراني، تبين أن الصورة التُقطت داخل طهران. شكلت هذه الهفوة البسيطة حلقة الوصل التي ربطت المنصات اللندنية مباشرة بمحيط رجل الأعمال الإيراني المعاقب دولياً، بابك زنجاني.
كشفت التحقيقات الاستخباراتية أن هذه الشبكة لم تكن مجرد واجهة لغسل الأموال، بل عملت كصراف آلي عابر للقارات يلتف بالكامل على النظام المصرفي الدولي (SWIFT). وجرى استغلالها لتحويل عائدات النفط الإيراني المهرب إلى عملات مشفرة ثابتة (USDT)، لتتدفق مئات الملايين منها مباشرة إلى حسابات قيادات حوثية في اليمن، بهدف تمويل شراء أجزاء الطائرات المسيرة، والصواريخ الباليستية، وعمليات البحر الأحمر.
ضربة مالية دولية
تداعيات «هفوة القطة» أدت إلى تحركات دولية صارمة، إذ أصدرت الخزانة الأمريكية حظراً شاملاً ضد منصة (BitBank)، الذراع البرمجية الأحدث لزنجاني، فيما جمدت منصات التداول الكبرى حسابات سرية مرتبطة بالشبكة تدفقت عبرها مئات الملايين. هذا الخناق الرقابي دفع زنجاني للخروج عبر منصة (X) متهماً واشنطن ب«الابتزاز»، ومعترفاً بشكل غير مباشر بمساعي مصادرة 660 مليون دولار من أصوله المشفرة، لتُكتب نهاية شبكة معقدة أُديرت من الظل، وفضحتها صورة لحيوان أليف.
لم تكن تلك الشبكة المشفرة مجرد قضية احتيال عابرة، بل هي الشريان المالي المغذي للتصعيد الإقليمي الخطير. وتكشف أحدث التقارير الاستخباراتية عن تحول كارثي، إذ تسعى طهران وميليشيا الحوثي على محاولة تعزيز نموذج «إتاوات السفن»، فارضةً رسوم عبور مشبوهة تصل إلى مليوني دولار للسفينة الواحدة، تُسيّل وتُغسل عبر ذات المنصات المشفرة. هذا الضخ المالي الرقمي هو ما يموّل عمليات الميليشيا الحوثية، بالتزامن مع رصد المشرف المالي وقيادات عسكرية في فيلق القدس من بينهم عبدالرضا شهلائي، على الساحل الغربي لليمن، مما دفع واشنطن لإصدار تحذيرات أمنية عاجلة. هكذا تُدار حروب الظل الحديثة، شبكة معقدة لتهديد الملاحة والاقتصاد العالمي، أُديرت في الخفاء.. ولم يسقطها اختراق استخباراتي، بل فضحها «طوق قطة بنفسجي».
لكن القصة لم تتوقف عند القطة ذات الطوق البنفسجي. ففي سبتمبر 2026، قالت شركة TRM Labs المتخصصة في تتبع العملات المشفرة، إن ما بدا في البداية منصتين منفصلتين للعملات الرقمية تطوّر عند تتبع الأشخاص والبنية التحتية والعلاقات بين الشركات إلى شبكة أوسع، وقدرت الشركة النشاط المرتبط بالحرس الثوري عبر «Zedcex» و«Zedxion» بنحو مليار دولار.
وقبل أيام، أعلنت النيابة الأمريكية في نيويورك سعيها لمصادرة نحو 61 مليون دولار من العملات المشفرة، قالت إنها عائدات من بيع النفط الإيراني في السوق السوداء ومخصصة لتمويل الحكومة والجيش الإيرانيين.
واللافت أن تمويلات إيران لميليشيا الحوثيين لم تختفِ من هذه الخريطة المالية. فقد قالت TRM Labs إن التحقيق السابق في شبكة زنجاني كشف تحويلات تجاوزت 10 ملايين دولار إلى سعيد أحمد محمد الجمل، الذي تصفه الخزانة الأمريكية بأنه مسؤول مالي بارز لدى الحوثيين ومدعوم من الحرس الثوري. وهكذا، فإن صورة القطة التي كشفت صلة شخصية بشبكة تبدو للوهلة الأولى مجرد مشروع للعملات المشفرة، انتهت إلى خريطة أوسع تمتد من واجهة تنفيذية وهمية وشركات رقمية إلى شبكات مالية إيرانية، وعمليات للحرس الثوري، وصولًا إلى أحد أبرز مسارات تمويل الحوثيين.
Elizabeth Newman was nothing more than a fictitious digital facade for flashy London companies managing billions of dollars, but the collapse of this financial empire did not come through a complex cyber breach; rather, it was thanks to a "purple cat collar" that led internet intelligence to uncover the most dangerous network financing the Houthis.
Fake CEO
The story began when a complex financial network attempted to hide its identity behind a fake CEO, using ready-made videos from the internet to establish international digital trading platforms like (Zedcex) and (Zedxion). While the network promoted its technical updates via the "Telegram" app to lure investors, one of the operators made an unexpected mistake by posting a candid photo of his white cat wearing a distinctive collar with a purple bell.
The Digital Rosetta Stone
Investigators from "Open Source Intelligence" (OSINT) picked up on this extraordinary thread. By matching the angles of household furniture and the cat's photo with accounts of engineers and figures close to the Iranian Revolutionary Guard, it became clear that the picture was taken inside Tehran. This simple oversight formed the link that connected the London platforms directly to the orbit of the internationally sanctioned Iranian businessman, Babak Zanjani.
Intelligence investigations revealed that this network was not just a front for money laundering; it operated as a cross-continental ATM that completely circumvented the international banking system (SWIFT). It was exploited to convert smuggled Iranian oil revenues into stable cryptocurrencies (USDT), with hundreds of millions flowing directly to accounts of Houthi leaders in Yemen, aimed at financing the purchase of drone parts, ballistic missiles, and operations in the Red Sea.
International Financial Blow
The repercussions of the "cat blunder" led to strict international actions, as the U.S. Treasury issued a comprehensive ban on the (BitBank) platform, the latest software arm of Zanjani, while major trading platforms froze secret accounts linked to the network through which hundreds of millions had flowed. This regulatory squeeze prompted Zanjani to take to the (X) platform, accusing Washington of "extortion," while indirectly acknowledging efforts to seize $660 million of his cryptocurrency assets, marking the end of a complex network managed from the shadows, exposed by a picture of a pet.
This cryptocurrency network was not just a fleeting fraud case; it is the financial lifeline fueling the dangerous regional escalation. The latest intelligence reports reveal a catastrophic shift, as Tehran and the Houthi militia seek to enhance the "ship tolls" model, imposing suspicious crossing fees of up to two million dollars per ship, which are funneled and laundered through the same cryptocurrency platforms. This digital financial influx is what funds the Houthi militia's operations, coinciding with the monitoring of financial supervisors and military leaders in the Quds Force, including Abdul Reza Shahlaei, along the western coast of Yemen, prompting Washington to issue urgent security warnings. This is how modern shadow wars are conducted: a complex network threatening global navigation and economy, managed in secrecy... and it was not brought down by intelligence infiltration, but rather exposed by a "purple cat collar."
However, the story did not end with the cat wearing the purple collar. In September 2026, TRM Labs, a company specializing in tracking cryptocurrencies, stated that what initially appeared to be two separate digital currency platforms evolved into a broader network when tracking individuals, infrastructure, and corporate relationships, estimating the activity linked to the Revolutionary Guard through "Zedcex" and "Zedxion" at around one billion dollars.
Days ago, the U.S. Attorney's Office in New York announced its efforts to seize approximately $61 million in cryptocurrencies, which it claimed were proceeds from the sale of Iranian oil on the black market and intended to finance the Iranian government and military.
Notably, Iran's funding for the Houthi militia did not disappear from this financial map. TRM Labs stated that the previous investigation into Zanjani's network uncovered transfers exceeding $10 million to Said Ahmed Mohammed Al-Jamal, whom the U.S. Treasury describes as a prominent financial official with the Houthis and supported by the Revolutionary Guard. Thus, the image of the cat that revealed a personal connection to a network that initially seemed like just a cryptocurrency project ended up leading to a broader map extending from a fictitious executive facade and digital companies to Iranian financial networks, operations of the Revolutionary Guard, and ultimately one of the main funding pathways for the Houthis.