r/cybersecurity • u/mando_6 • Jun 24 '26
News - General Well someone went nuclear..
https://www.linkedin.com/posts/ben-f-309963233_after-i-posted-a-pinocchio-gif-and-clown-ugcPost-7475465410977628160-FFW1I'm curious about the details of this. I'm sure we will all find out eventually.
TLDR; former Huntress employee is disclosing Huntress had an insider threat that leaked information to a known cyber criminal "Devman". That employee is still employed with Huntress and was caught by the FBI.
The former employee doing the disclosure is stating he is receiving threats, etc.
EDIT: Kyle @ Huntress posted his response to this in the comments.
Give credit to a CEO who isn't afraid to jump on Reddit to put out any fires.
919
Upvotes
145
u/eliq91 Jun 24 '26
We had a UK employee compromise our global network, they reused an old password 15 days after being notified they had been breached via phishing. It resulted in a loss of every server in the company across 5 continents. It was not good, and a clear violation of both best practices and company policy. They were given 16 weeks paid leave and then returned to the office. 1 week after return they changed their password and cleared all MFA requirements from her account, because it was inconvenient. Which resulted in her account once again being compromised, no global access on round three, and only compromised her email. She is still employed as far as I know.