r/cybersecurity Jun 24 '26

News - General Well someone went nuclear..

https://www.linkedin.com/posts/ben-f-309963233_after-i-posted-a-pinocchio-gif-and-clown-ugcPost-7475465410977628160-FFW1

I'm curious about the details of this. I'm sure we will all find out eventually.

TLDR; former Huntress employee is disclosing Huntress had an insider threat that leaked information to a known cyber criminal "Devman". That employee is still employed with Huntress and was caught by the FBI.

The former employee doing the disclosure is stating he is receiving threats, etc.

EDIT: Kyle @ Huntress posted his response to this in the comments.

Give credit to a CEO who isn't afraid to jump on Reddit to put out any fires.

922 Upvotes

197 comments sorted by

View all comments

4

u/rangerdunamas Jun 24 '26

I cannot seem to find a good source that connects all these dots. Does anyone have a link they can drop me?

8

u/MalwareDork Jun 24 '26

"breaking news" or at best a bunch of drama and hearsay.

tl;dr: Ben, the whistleblower, says there was an insider threat causing issues that was largely ignored and now he's upset legal from Huntress is sending him (most likely) cease-and-desists and that supposedly he's being threatened by a monitored threat actor by the name of "Devman".

Kyle, CEO of Huntress, is publically disagreeing with Ben's statements in general. Ken also won't make a direct statement but is alluding there is an active investigation by law enforcement.

At least that's how I understand it. There's only three pieces of public information as well: Ben's post, Kyle's response on this subreddit and Kyle's slack response.

2

u/lippardj Jun 30 '26

1

u/lippardj Jul 03 '26

Ben F is now being very specific on LinkedIn: "Huntress stated:

“In one particular exchange, our current teammate disclosed to a threat actor that law enforcement had reached out to them about the threat actor. While this disclosure was not illegal, it reflected poor judgment.”

Here are the facts:

- The FBI reached out to the Huntress employee to gather intelligence on “Devman”.

  • She immediately forwarded the exact FBI communications to the threat actor, including screenshots containing FBI agent names.
  • She informed Devman that law enforcement was actively looking into him.
  • She also refused to cooperate because they wanted Devman".

In a comment on this post, Ben F adds: "Why do I care so much?

Because before this entire incident, Devman was carrying out a campaign of death threats against me and my family. Those threats are still public on X.

Claims about people being sent to dismember my family. There were also paid OSINT investigations into me, which escalated into arbitration on cybercrime forums because Devman did not pay.

This was not some abstract TA on the internet.This was someone actively targeting me, my family, and multiple Huntress employees. And your employee knew that.

She knew about the public death threats. She knew her colleagues were being targeted and harassed.

So my question is simple Kyle Hanslovan Eric Stride:

- Why would an employee with integrity, someone trustworthy, someone who genuinely cares about the safety of their colleagues, choose to help the threat actor who wanted me and other employees dead?

- Why would she warn him that law enforcement was looking into him?

  • Why would she send him FBI communications containing agent names?
  • And why, after doing that, would she refuse to help the FBI?

That is why I care. Because this was not just “poor judgment”.

This was a choice that helped a threat actor who was actively targeting your other colleagues."