Skip to content
Engineer Sentenced for Ransomware Attack on Employer's Network

Engineer Sentenced for Ransomware Attack on Employer's Network

First seen 7 Oct 2026, 01:58 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 7, 2026 at 01:58 UTC
  • •Daniel Rhyne was sentenced for locking thousands of devices in a ransomware attack.
  • •The attack involved unauthorized access, password changes, and account deletions.
  • •Rhyne demanded a ransom of 20 bitcoins, threatening further network damage.

Daniel Rhyne, a former core infrastructure engineer, was sentenced to 32 months in prison for a ransomware-style attack on his employer's network, affecting over 3,000 devices. Rhyne accessed the company's network without authorization, changing passwords and deleting accounts between November 8 and November 25, 2023. He sent a ransom email demanding 20 bitcoins (approximately $750,000) while threatening further damage to the network. The attack resulted in the blocking of access to 254 servers and 3,284 workstations. Rhyne's actions were part of a failed extortion plot, and he was arrested in August 2024. The case highlights the risks posed by insider threats in cybersecurity.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2023-11-08
Unauthorized access begins
Rhyne accessed the company's network using an administrator account and began changing passwords.
Bleepingcomputer
2023-11-25
Ransom email sent
Rhyne sent a ransom email to coworkers, demanding payment to prevent further damage to the network.
Bleepingcomputer
2024-08
Arrest of Daniel Rhyne
Rhyne was arrested for his role in the extortion plot targeting his employer.
Bleepingcomputer
2026-09-28
Sentencing of Rhyne
Rhyne was sentenced to 32 months in federal prison for his actions.
Cybersecuritynews

More articles in this cluster (4)

Following this threat?

Track Brightly Software in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What was the extent of the damage?
The attack affected over 3,000 devices, blocking access to 254 servers and 3,284 workstations.
What was the motive behind the attack?
Rhyne attempted to extort his employer for a ransom of 20 bitcoins, threatening further damage to the network.
What legal consequences did Rhyne face?
Rhyne was sentenced to 32 months in federal prison after pleading guilty to extortion.