Skip to main content

Tag: insider threat

35 articles

A somber government building interior with a torn or broken security badge on a table.

DIA Insider Pleads Guilty to Leaking Secrets to Foreign Spies

A DIA insider has pleaded guilty to leaking classified information to foreign spies, admitting to betraying his oath and putting national security at risk. The shocking case began with a single email in March 2025, sparking a months-long undercover operation that ultimately led to his arrest.

Analyst 207
Empty office with computer and papers, blurred cityscape behind.

Rockstar Games Leak Exposes Insider Threat Risks

The leak of Grand Theft Auto VI footage by CyberLeek has highlighted the devastating risks of insider threats, where stolen IP can destroy the hard work and livelihoods of employees and companies. This breach has exposed a gaping hole between traditional copyright enforcement and the evolving tactics of threat actors.

Analyst 207
Federal agency office interior with a laptop on a desk and blank screen.

FBI Probes US Agency's Hire of North Korean IT Worker

A single hiring decision has sparked a federal investigation: a US federal agency, which hasn't been named, has been probed by the FBI for employing a remote IT worker from North Korea, a move that raises serious security concerns. This case highlights the limitations of traditional defenses in tackling sophisticated schemes involving foreign IT workers.

Analyst 207
A data analyst's workstation with laptop and papers on a plain surface, under scrutiny.

Data Analyst Sentenced for Extorting Employer in $2.5 Million Cyber Scheme

A 27-year-old data analyst turned cyber villain, threatening to spill sensitive salary info to the SEC unless his employer paid up - in a brazen $2.5 million extortion scheme that landed him in hot water. He made his demands in chilling messages, including one that read: We will commence the process of disseminating salary information starting January 1, 2024 in phases to all employees and will report you to the SEC after for not reporting the breach.

Analyst 207
Abandoned office cubicle with scattered papers and pushed-back chair.

Contractor Sentenced for Insider Attack on Brightly Software

A contractor's six-week extortion scheme against Brightly Software ended with a guilty verdict, after he threatened to expose sensitive payroll and personnel records unless he received a whopping $2.5 million - ultimately settling for a significantly smaller sum of $7,540.92. The 27-year-old data analyst had been quietly siphoning off corporate data from the Siemens-owned company's network for months.

Analyst 207
Laptops with sticky notes on a conference room table, surrounded by scattered papers and chairs.

IT Department Exposes Login Credentials on Sticky Notes

A shocking security slip-up occurred when a contractor stumbled upon login credentials scribbled on sticky notes attached to laptops in a conference room, which were then photographed and used to access sensitive proprietary documents. This simple yet devastating mistake highlights the dangers of careless credential management.

Analyst 207
Empty computer workstation in a local government office with filing cabinets and cubicles in the background.

Council Worker's Data Snooping Spree Exposes Surveillance Vulnerabilities

A council worker's alarming four-day data snooping spree has exposed glaring vulnerabilities in surveillance systems, leaving many to wonder how such unauthorized access was possible. Fortunately, the individual was spared a prison sentence, but the incident raises serious questions about data security.

Analyst 207
Blurred laptop screen on a desk with a concerned person in the background.

Huntress Insider Threat Exposed in Ransomware Probe Leak

A Huntress insider reportedly made a grave mistake, casually disclosing to a cybercriminal that law enforcement was on their tail - a moment of poor judgment that fell short of the company's high standards. The alarming exchange was part of a larger pattern of questionable communication uncovered between the currently employed threat hunter and the threat actor.

Analyst 207
Dimly lit office cubicle with scattered papers, open laptop, and concerned coworkers in the background.

Huntress Insider Leak Exposes Potential Security Breach

A shocking security breach at Huntress has come to light, with a former analyst claiming that a colleague may have compromised the company's integrity by passing sensitive law enforcement communications to a notorious cybercriminal. The explosive allegations have left many questions unanswered about the breach and its potential impact.

Analyst 207
Damaged IT equipment and exposed cables in a school district's network closet.

Former IT Employee Sabotages School District with Prolonged Cyberattack

A former IT employee waged a relentless cyberwar against his old employer, the Saydel Community School District, launching a devastating 21-month attack that crippled the district's systems and disrupted classrooms. The attacks began just days after he left his job, with the deletion of the district's Facebook account, and continued with repeated intrusions into critical services.

Analyst 207
Blurred computer screen and security emblem in background of courtroom or IT office setting.

Disgruntled IT worker sabotages school district systems, jailed 21 months

A disgruntled IT worker wreaked havoc on a school district's systems for over a year and a half, causing chaos and destruction, after being terminated from his job. The sabotage spree, which included deleting crucial data and altering systems, earned him a 21-month jail sentence.

Analyst 207
Control room workstation with industrial controls and out-of-focus screens.

Inactive User Account Enables Hackers to Control City's Water System

A simple mistake of leaving a former employee's user account active allowed hackers to take control of a city's water system, highlighting the importance of promptly disabling access for departed staff. This "zombie" account proved to be the vulnerable entry point that attackers exploited to wreak havoc on municipal operations.

Analyst 207
Governor Jared Polis in a formal office setting with a blurred state seal and election-related hints.

Colorado Governor Commutes Sentence for Election Data Breacher Tina Peters

Colorado Governor Jared Polis has commuted the sentence of Tina Peters, the former Mesa County election clerk behind one of the most serious election-related data breaches in US history, freeing her from a nine-year prison term after just a year and a half. Peters was convicted of abusing her position to break into county election facilities under false pretenses.

Analyst 207
IT manager sits at desk with concerned expression, surrounded by office decor.

Social Engineering Tactics Expose Company's Vulnerability

A simple request from "the boss" was all it took for a threat actor to gain root access to a company's system, exposing a shocking vulnerability in their security - one that was exploited through a clever social engineering tactic. Human IT managers, trying to be helpful, inadvertently handed over the keys to the kingdom.

Analyst 207
Rows of computer servers and network equipment in a brightly-lit server room with neatly organized cables and wires.

AI Adoption Exposes New Vulnerabilities in APAC Cybersecurity

As AI systems increasingly become integral to business operations, they're also emerging as a major insider threat, with 7 in 10 APAC organisations now identifying AI as their top data security risk. This new breed of threat is forcing companies to rethink their cybersecurity strategies and take a closer look at the vulnerabilities AI can introduce.

Analyst 207
Interior of a government building with a judge's bench and tall windows.

Contractor Convicted for Destroying Dozens of Federal Databases

A contractor's reckless actions led to the destruction of dozens of federal databases, showcasing a staggering disregard for the security and integrity of sensitive government information. After being terminated on February 18, 2025, the contractor and his twin brother intentionally caused chaos by accessing computers without authorization and deleting crucial data.

Analyst 207
Employees in a dimly lit office break room subtly exchanging a piece of paper or USB drive.

UK Workers Sell Corporate Logins, Exposing Firms to Cybercrime

One in eight UK employees at large firms have sold or know someone who has sold corporate logins in the past year, a shocking trend that puts companies at risk of cybercrime. Alarming still, many justify this risky behaviour, with senior executives being more likely to think selling credentials is acceptable.

Analyst 207
Government building interior with daylight through tall windows and empty podium.

Pharmacist Indicted for Spying on Co-Workers with Cyber Tools

A pharmacist in Maryland has been indicted for allegedly spying on nearly 200 coworkers and individuals over eight years using cyber tools, breaching trust and violating digital boundaries. Matthew Bathula faces federal charges for unauthorized computer access and aggravated identity theft.

Analyst 207
Ransomware incident responder sits at desk with laptop and papers, highlighting vulnerability.

Ransomware Negotiator Exposed as Insider for Gang

A shocking case reveals a glaring weakness in ransomware incident response: organizations often put blind trust in single negotiators, leaving them vulnerable to exploitation by attackers. This human error, not a technical bug, can turn a trusted role into a gateway for cybercriminals.

Analyst 207
Worn office chair faces empty desk with shattered laptop and scattered papers amidst dark filing cabinets.

US Army Employee Indicted for Leaking Classified Defense Information

A former US Army employee with a top-secret clearance has been indicted for allegedly leaking classified national defense information to unauthorized individuals, raising serious questions about trust and security breaches. This shocking case highlights the urgent need for tighter controls and monitoring of sensitive information.

Analyst 207
Drift Protocol Hack Unfolds from Months-Long Insider Operation

Drift Protocol Hack Unfolds from Months-Long Insider Operation

The Drift Protocol hack, which resulted in a staggering $280 million loss, was not a quick exploit, but a meticulously planned six-month operation where attackers built a hidden presence within the ecosystem. This unprecedented breach reveals a shocking level of insider involvement, taking the attack far beyond a simple code vulnerability.

Analyst 207
Engineer Pleads Guilty to Ransomware Extortion Plot Targeting Industrial Firm

Engineer Pleads Guilty to Ransomware Extortion Plot Targeting Industrial Firm

A former infrastructure engineer has pleaded guilty to a ransomware extortion plot that targeted his own employer, an industrial firm in New Jersey, by locking administrators out of 254 servers. This shocking breach of trust highlights the devastating consequences of insider threats in the digital age.

Analyst 207
Former Defense Contractor Boss: Exclusive Harsh 7-Year Term

Former Defense Contractor Boss: Exclusive Harsh 7-Year Term

A former defense‑contractor boss was sentenced to seven years after allegedly selling zero‑day vulnerabilities to a Russian buyer, a case that lays bare how quickly trusted tools can become weapons. It’s an unsettling reminder that when defenders traffic in the tools of attack, public trust—and national security—are the real casualties.

Analyst 207
Cost of Insider Incidents: Stunningly Costly, Near $20M

Cost of Insider Incidents: Stunningly Costly, Near $20M

Think insider incidents are minor? Think again—the cost of insider incidents can skyrocket to nearly $20 million, and this post shows where that money goes and how to stop the bleed.

Analyst 207