Engineer sentenced for locking over 3,000 devices on employer network

Summary

A former core infrastructure engineer has been sentenced to 32 months in prison for deploying a ransomware-style attack that locked over 3,000 devices on his employer's network. The incident occurred at an industrial company in New Jersey.

IFF Assessment

FOE

This incident represents a severe internal threat leading to significant disruption and financial damage, which is bad news for defenders.

Defender Context

This case highlights the critical risk of insider threats, particularly from individuals with privileged access to core infrastructure. Defenders must implement robust access controls, activity monitoring, and strict separation of duties to prevent such catastrophic events. Furthermore, effective incident response plans are crucial to contain and recover from internal sabotage.

Read Full Story →