Engineer sentenced to 32 months in prison for plotting a Bitcoin ransom scheme against employer
Decrypt
44m ago
Ai Focus
U.S. federal prosecutors say former core infrastructure engineer Daniel Rhyne was sentenced to 32 months in prison for attacking the network of his employer in New Jersey and demanding bitcoin ransom. The prosecution stated that in November 2023, he sent an email demanding a payment of 20 BTC and threatened to shut down 40 of the company's servers for 10 consecutive days if the payment was not made.
Helpful
No.Help

U.S. federal prosecutors stated on Monday that a former employee of an industrial company in New Jersey was sentenced to 32 months in prison for attacking the employer's computer network and demanding Bitcoin ransom.

59-year-old Daniel Rhyne comes from Kansas City, Missouri. He was sentenced on September 28th in Trenton by U.S. Federal District Judge Michael A Shipp. Rhyne pleaded guilty in April, admitting to one charge of extortion related to threatening to damage protected computers, as well as one charge of intentionally damaging protected computers.

On October 5th, the United States Attorney's Office of New Jersey wrote on social media: “Former Employee of Industrial Company Sentenced to 32 Months in Prison for Computer Attack and Extortion”.

According to a criminal complaint from the Federal Bureau of Investigation, Rhyne was once a core infrastructure engineer for the company and an expert in virtual machine hosting. The prosecution did not disclose the name of the company, but stated that it is headquartered in Somerset County, New Jersey, and its services cover the biopharmaceutical and oil and gas industries.

A complaint stated that around 4 p.m. on November 25, 2023, the company's network administrators began receiving notifications for password resets from hundreds of accounts, and subsequently discovered that all other domain administrator accounts had been deleted.

44 minutes later, an employee received an email with the subject “Your Network Has Been Penetrated.” The email claimed that the company’s IT administrator had been locked out and the backups had been deleted, and warned that unless $20 BTC (approximately $750,000 at the time) was paid by December 2nd, another 40 servers would be shut down each day for the following 10 days.

According to the complaint, the ransom demanded in the email was 700,000 euros, and payment was required to be made in Bitcoin.

Hidden Virtual Machine

Investigators traced this attack to an unauthorized virtual machine. The virtual machine was created on the company's network on November 9, 2023, with the password “TheFr0zenCrew!”, which was later also set on the administrator account, 301 user accounts, as well as the email account used to send ransom demands.

Complaints allege that on the morning of the attack, a scheduled task was created from this machine via a remote desktop session. The task was intended to delete 13 administrator accounts, modify the passwords of 254 servers and 3,284 workstations, and shut down dozens of servers starting from December 3rd.

FBI associated this machine with his own by using a company laptop owned by Rhyne. The complaint stated that the browsing activities on the laptop stopped when browsing on the hidden machine, and the building access records showed that he entered the headquarters a few minutes before logging into his own account.

The complaint also stated that on the day of the attack, the laptop belonging to Rhyne was connected to the internet from the IP address assigned to their residence in Warren County, New Jersey, and within a few minutes thereafter, sessions related to setting up these tasks appeared.

A complaint alleges that a few days ago, a user of this machine searched for “how to clear all windows logs from command line” and “how to remotely shutdown a computer using cmd”.

The complaint also raised allegations of wire fraud against Rhyne, but these allegations did not appear in the two charges for which he pleaded guilty. According to the prosecution, he could face a maximum sentence of 5 years for the extortion charges and a maximum sentence of 10 years for the computer damage charges.

Tip
$0
Like
0
Save
0
Views 18
WalletJYS reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Leaving Wall Street for Love, a 38-Year-Old Founder Creates a AI Insurance Unicorn
After leaving Wall Street, Gage Caligaris founded Ledgebrook, a native specialty insurance platform headquartered in Boston. The company announced the completion of a $200 million financing round co-led by Allianz X and Rockefeller Capital Management, with a post-financing valuation of $2.6 billion, marking its debut as a unicorn.
Fortune
·2026-10-07 21:52:18
6
Google Receives Shutdown Orders for Two Data Centers in Finland; Must Complete Environmental Impact Assessment First
The Finnish Licensing and Regulatory Authority has ordered Google's subsidiary to suspend construction of two data center projects in Muhos and Kajaani until an environmental impact assessment is completed. Google stated that it will comply with the regulatory requirements. Reports indicate that, driven by the AI craze, Finland is becoming a popular region for global data center investments, and Google previously committed to investing $15 billion in Finland by 2028.
The Block
·2026-10-07 21:39:05
9
Morning News: S&P 500 Hits a Record, Economic Cooling Caused by ICE, and the Connection to China of Webull
The CNBC morning briefing reported that the S&P 500 and the Nasdaq set new records again, with stock indices falling before the opening of trading; the report also mentioned the impact of the ICE raid on the local economy, Meta working with multiple companies to promote the AI agency agreement, Anthropic expanding the Claude Startups project, as well as Webull facing questions from a congressional committee regarding its ties with the Chinese government.
CNBC
·2026-10-07 21:29:03
12
BlueVoyant appoints John Hultman as Chief Revenue Officer
Cybersecurity company BlueVoyant announces the appointment of John Hultman as Chief Revenue Officer, responsible for leading global sales and revenue operations, and working with management to drive growth and strengthen market execution. The company stated that this appointment comes at a time when it is expanding its AI-driven cybersecurity product portfolio.
PR Newswire
·2026-10-07 21:29:01
12
TOP Ships Announces the Acquisition of Four High-Standard Ice-Class 1A New MR Tankers, with a Cumulative Gross Revenue of Approximately $1.24 Billion
TOP Ships announced that it has signed share purchase agreements with related parties, intending to acquire four companies that hold orders for four high-specification ice-class 1A newly built MR oil tankers; the relevant vessels are expected to be delivered between June 2029 and March 2030. The company stated that after the completion of this transaction, including optional renewal periods, its total potential gross revenue backlog will increase to approximately $1.24 billion.
GlobeNewswire
·2026-10-07 21:29:00
15
View More