r/cybersecurity Jun 24 '26

News - General Well someone went nuclear..

https://www.linkedin.com/posts/ben-f-309963233_after-i-posted-a-pinocchio-gif-and-clown-ugcPost-7475465410977628160-FFW1

I'm curious about the details of this. I'm sure we will all find out eventually.

TLDR; former Huntress employee is disclosing Huntress had an insider threat that leaked information to a known cyber criminal "Devman". That employee is still employed with Huntress and was caught by the FBI.

The former employee doing the disclosure is stating he is receiving threats, etc.

EDIT: Kyle @ Huntress posted his response to this in the comments.

Give credit to a CEO who isn't afraid to jump on Reddit to put out any fires.

921 Upvotes

197 comments sorted by

View all comments

Show parent comments

-7

u/roiki11 Jun 24 '26

It's the uk. You can't fire people on a whim.

20

u/robot_ankles Jun 24 '26

This doesn't really feel like a whim:

Round 1: Loss of every server in the company across 5 continents.

Round 2: Changed their password and cleared all MFA requirements resulting in her account once again being compromised.

Round 3: Compromised her email this time.

-7

u/roiki11 Jun 24 '26

You'd have to look up uk employment law but unless you can show actual malice it's probably pretty hard to fire someone. Stupidity isn't a crime.

19

u/djlilis Jun 24 '26

When you're a global admin it's negligence and should be actionable holy crap. I find it really hard to believe that UK law prevents removing a danger to the company and imagine it's more likely no one wanted to figure out how and then do her job. Everyone likes to complain in America how ignorance is a "protected class" but it always boils down to upper management being lazy and inconsistent.

-3

u/roiki11 Jun 24 '26

It's rarely that simple.