American engineer attacked employer's network for ransom of 20 bitcoins, sentenced to 32 months in prison
A former core infrastructure engineer, Daniel Rhyne, from an industrial company in New Jersey, was sentenced to 32 months in prison for attacking his employer's computer network and demanding a ransom in Bitcoin. The 59-year-old Rhyne, who is from Kansas City, Missouri, was sentenced on September 28 by U.S. District Judge Michael A. Shipp in Trenton. He pleaded guilty in April this year to charges including extortion by threatening to damage a protected computer and intentionally damaging a protected computer. The prosecution did not disclose the name of the company, which is headquartered in Somerset County, New Jersey, serving clients in industries ranging from biopharmaceuticals to oil and gas.According to the FBI's criminal complaint, around 4 PM on November 25, 2023, the company's network administrator began receiving hundreds of password reset notifications for accounts, and subsequently discovered that all other domain administrator accounts had been deleted. Forty-four minutes later, employees received an email titled "Your Network Has Been Penetrated," claiming that the company's IT administrator had been locked out, backups had been deleted, and warning that unless 20 Bitcoins (approximately $750,000 at the time) were paid by December 2, an additional 40 servers would be shut down daily for 10 days. The ransom was set at 700,000 euros, to be paid in Bitcoin.Investigators traced the attack back to an unauthorized virtual machine created on the company network on November 9, 2023, with the password "TheFr0zenCrew!", which was subsequently set for the administrator account, 301 user accounts, and the email used to send the ransom note.