惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Google Online Security Blog
Google Online Security Blog
博客园_首页
酷 壳 – CoolShell
酷 壳 – CoolShell
Jina AI
Jina AI
博客园 - Franky
大猫的无限游戏
大猫的无限游戏
Hugging Face - Blog
Hugging Face - Blog
博客园 - 司徒正美
V
V2EX
雷峰网
雷峰网
云风的 BLOG
云风的 BLOG
V
Visual Studio Blog
F
Full Disclosure
Y
Y Combinator Blog
V
V2EX - 技术
Attack and Defense Labs
Attack and Defense Labs
S
Security @ Cisco Blogs
Schneier on Security
Schneier on Security
Microsoft Azure Blog
Microsoft Azure Blog
SecWiki News
SecWiki News
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
The GitHub Blog
The GitHub Blog
量子位
PCI Perspectives
PCI Perspectives
S
Secure Thoughts
D
Darknet – Hacking Tools, Hacker News & Cyber Security
AWS News Blog
AWS News Blog
Blog — PlanetScale
Blog — PlanetScale
爱范儿
爱范儿
K
Kaspersky official blog
B
Blog
A
Arctic Wolf
Hacker News: Ask HN
Hacker News: Ask HN
L
LangChain Blog
T
Tor Project blog
P
Privacy & Cybersecurity Law Blog
Recent Announcements
Recent Announcements
宝玉的分享
宝玉的分享
The Register - Security
The Register - Security
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
L
Lohrmann on Cybersecurity
D
Docker
A
About on SuperTechFans
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Google DeepMind News
Google DeepMind News
The Last Watchdog
The Last Watchdog
S
Security Affairs
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
P
Privacy International News Feed
Simon Willison's Weblog
Simon Willison's Weblog

The Register - Security

NanoClaw now armed with JFrog for safer packages Novo Nordisk reports cyberattack as UK gives Wegovy pill the nod Microsoft has mostly repaired a flaw in Surface hardware that allowed unprotected devices to be bricked by a single packet Microsoft has mostly repaired flaw in Surface hardware that allowed unprotected devices to be bricked by a single packet Google fires sueball at alleged Chinese phishers over AI-powered fraud ops Plymouth council exposes hundreds in latest local government email gaffe UK digital ID gets brain trust to 'challenge' ministers on policy BOFH: For one ambitious security type, chaos is a ladder ShinyHunters hacked 100+ orgs by exploiting an Oracle PeopleSoft 0-day Microsoft's worst 'Nightmare' unleashes BitLocker bypass 0-day VRChat says somebody faked a breach notice with the Maine AG's office Every employee’s password was stored in a single Excel file Chinese agents caught rebuilding botnets and stirring the pot on AI datacenter debate Angry bug hunter with Microsoft beef drops new Windows 0-day GitHub pulls pin on npm's auto-run scripts Ivanti tells Sentry customers to patch now as critical bugs hit 10.0 and 9.9 AI is making Patch Tuesday (kinda) fun again Miasma worms its way onto GitHub as attack kit goes open source Apple’s iOS 27 goes all agentic on compromised passwords, promises to change them with one tap Signal says UK plan to scan devices for nude images 'endangers us all' Chrome's zero-day Whac-A-Mole continues with fifth exploited bug of the year France probes compromise of gov messaging platform after account hijack Qilin NHS breach tally grows as Essex trust confirms stolen records Norks blast 250+ fake job offers to developers over 6 weeks to try and snarf creds and crypto Ransomware crims got a month-long head start on Check Point VPN 0-day that now has a fix Ransomware sends Illinois high school on an early summer vacation GitHub nukes 70+ Microsoft repos, breaks CI/CD pipelines, following suspected worm infections NSO Group back in Meta's crosshairs after alleged WhatsApp targeting Oxford Uni student data pwned yet again - this time via career platform breach If you don't fall for these extortionists' calls, they'll show up with USB sticks Yet another Cisco SD-WAN 0-day under attack, and no patch in sight World Food Programme breach exposes data of 600k vulnerable Gazan families Council in UK's City of York outs hundreds of disabled residents with a single email blunder Pink is the latest goon squad to use fake helpdesk calls to steal creds OpenAI's agent chained decade-old DoS attacks to crash web servers in seconds Five Eyes: Watch out for odd LinkedIn connection requests, China's back on the hunt for state secrets Duo who sold car crash victims' data must repay £118k Nobody needs Mythos or 0-days to build a chaos-causing computer worm – free open source models work just fine All the passwords were stored in Active Directory description fields Commvault says it's time to rethink resiliency as AI crooks leave victims in a 'dark, dead' state Bend the beam like Beckham to defeat anti-jamming tech Another bug hunter leaks Microsoft exploits in defiance of company’s handling of vulnerability disclosures Anthropic ups Glasswing partner count 4x, UK banks snubbed 'Dumbass' criminal breaks the 'first rule of ransomware club' Cisco praises AI bug hunt, won't reveal flaw tally Russian spy agency says foreign spies turned officials' smartphones into surveillance devices Microsoft reaches for olive branch after public dustup with 0-day researcher Claude celebrates Anthropic's stock market float with blockbuster ... outage Northern Ireland cops issue PSA after official phone number spoofed by scammers Shai-Hulud malware infects Red Hat npm packages downloaded 80K times weekly Election interlopers register 5K+ domains, hope to catch some voting phish GTA cheat service Atlas Menu hacked as attacker alleges screenshot spying Palo Alto VPN bug graduates from advisory to active exploitation Password manager Dashlane suspends customer accounts amid brute-force attacks Putin sends submarines to survey Britain's subsea cables. UK deploys Royal Navy, mobilizes parliamentary draftsmen Lone attacker published 14 malicious npm packages mimicking popular OpenSearch, Elasticsearch libraries ICE to keep an eye on your eyes under $25M biometric scanner deal No fix yet for critical RCE bug in open-source Git service Gogs - exploit module is out 23andMe inherits lawsuit over 'disturbing' DNA data breach Dutch cops wrest 17M devices from mystery botnet's clutches ChatGPT blindly trusts browser content, turning the page into a payload Russia-linked threat group put ChatGPT to work from lure to payload ShinyHunters adds Charter to trophy shelf after 4.9M customer records leak Troops’ phones gave away location data to foreign adversaries Disgruntled 0-day hunter 'humiliated' by Microsoft pledges 'bone shattering drop' as Redmond calls cops Snowflake buys Natoma to help freeze out rogue agents Snowflake buys Natoma to help freeze out rogue agents Microsoft tests the 15-character limit of Windows Server admins' patience Carnival: ShinyHunters cruised off with 6M customer records Company CEO flooded file share with smut, called for help after he deleted it CrowdStrike, Google shatter Glassworm botnet Bosses blinded by confidence about shadow AI use by workers Extortion crews are visiting law firms pretending to be tech support, FBI warns India's cyber agency sets clock at 12 hours to tackle exploited bugs as AI turns up the heat Are we human? MyPillow must decide whether to be firm or soft as ransomware crims demand pay Experts pour cold borscht on Farage's Russian hack claim Anthropic to release Mythos-class models to the public AI eyes scanning for bugs create a worrisome Linux security trend Jailbroken Gemini helped Russian-speaking fraudster target MAGA crypto users Megalodon chums the waters in 5.5K+ GitHub repo poisonings Techie claims Trump Mobile website was leaking thousands of people's data Cisco used AI to write security incident reports, with mixed results Dems slam Trump for making cybersecurity hold out the tin cup while splurging on ballroom and Jan. 6 'slush fund' Threat hunters find Google API keys still usable 23 minutes after deletion HackerOne takes an axe to its bug bounty rewards Attackers spill plaintext passwords of 46k Myspace93 users after 2021 breach Cisco serves up yet another perfect 10 bug with Secure Workload admin flaw Microsoft open-sources agentic AI safety tools Zombie user account let hackers control the city’s water Even Claude agrees: hole in its sandbox was real and dangerous GitHub says internal repos exfiltrated after poisoned VS Code extension attack London's police asked Big Tech for comms data over 700,000 times last year Are we human? America's top cyber-defense agency left a GitHub repo open with with passwords, keys, tokens – and incredibly obvious filenames America's top cyber-defense agency left a GitHub repo open with passwords, keys, tokens – and incredibly obvious filenames Clear your calendar, Drupal user: You have a critically urgent patch to install Do fear the Reaper - stealer swipes macOS users' passwords, wallets, then backdoors them Shai-Hulud copycat worm infects yet another npm package Linux kernel flaw opens root-only files to unprivileged users
Fired IT worker jailed for 21 months after sabotaging old school district
Connor Jones · 2026-06-13 · via The Register - Security

A disgruntled IT worker faces 21 months behind bars after being found guilty of sabotaging his former employer’s systems for more than a year and half.

Ezekiel Dean Potter, 34, was fired from his IT support job at Iowa’s SaydelU Community School District (SCSD) in April 2023. He was found guilty of causing various technical damages to SCSD’s systems betwUeen May 2023 and January 2025.UU

At his sentencing hearing on June 11, the court heard thaUt the IT worker had gathered and stored more than 300 Saydel user accountU credentials before he was terminated from his position.

Potter’s other offenses included deleting SCSD’s Facebook page on June 1, 2023, and data related to its Apple School Manager program, which prevented it from managing Macs and iPads.

The disgruntled worker, who the prosection described in its sentencing memo [PDF] as “a plague on the Saydel Community School District,” was just one of two IT staff members who had the required privileges to make changes to the Facebook account. 

The deletion ended up being a permanent one, and SCDC had to create a new page in August.

Following his intrusion into the district’s Apple School Manager on June 14, 2023, SCSD’s IT team had to work with Apple for a week to restore their access after Potter deleted users’ passwords, phone numbers, billing information, and the primary mobile device server management information, court documents [PDF] showed.

He also attempted to delete all user accounts and restricted access for those who still had one.

Potter’s next offense took place between July and August 2023, when he attempted to interfere with SCSD’s GoDaddy account, unsuccessfully resetting usernames and passwords.

Potter logged into this GoDaddy account no less than 26 times, including on one occasion where he used his company-issued PC supplied by his subsequent employer, convenience store and pizza chain Casey’s.

The IT specialist then took an extended break from his cyber sabotage. Court documents mention Potter successfully gaining access to SCDC’s Google and Gmail accounts in October 2024, but he waited even longer to act on this access.

It wasn’t until January 2025 that he logged into SCDC’s PowerSchool-based Schoology learning platform using one of the district’s Google accounts to which he had access, and deleted the account of one of the organization’s IT staff.

This had the knock-on effect of locking out teachers during a school day and, in turn, preventing them from teaching for two hours.

He returned a week later and deleted an additional nine district Gmail accounts, including current and former staff, the district IT director, and superintendent.

Investigations showed that even though Potter switched to a VPN during one of the January intrusions, his IP address was later traced back to him and his employer, The Printer Inc, which he joined after leaving Casey’s. He left that job on January 23, 2025, for reasons not disclosed.

Potter seemingly trusted at least one of his coworkers enough to “wipe” a USB drive he left in his old desk, asking them to do so after he departed the company. That trust was misplaced, however, as the coworker instead reported the USB to management, and what followed ultimately proved to be Potter’s undoing.

The Printer Inc passed the USB to law enforcement, and later the FBI, which forensically examined the device, finding spreadsheets filled with more than 300 district usernames and passwords, a floor plan for Saydel High School, as well as personal data pertaining to Potter and pay stubs from his employment at SCSD.

In total, the district incurred $73,375 worth of costs related to employees' lost time, digital forensics, learning downtime, and time spent working with other vendors to remediate his intrusions.

SCSD's insurer spent an additional $27,893.75 in payments for digital forensics and remediation work, taking the total losses up to $101,268.81.

Potter was indicted on October 15, 2025, and arrested the following day, but released on pretrial supervision after accepting responsibility for his offenses. He later entered a guilty plea in January 2026, and was found guilty in February.

At his sentencing hearing on Thursday, Potter expressed deep regret for his actions, especially for disrupting children’s learning, and for failing his family.

"I never intended to negatively affect students, but I recognize that harm was still done and I'm deeply sorry," he said, according to local media. "This experience humbled me in ways I never expected, but I needed that."

His defense attorney, Joseph Herrold, stated: “Mr. Potter now fully sees the impact of his actions and deeply regrets the harm he caused.”

Herrold argued against a prison term, instead asking for a five-year probation term, owing to Potter’s deep regret and the strong deterrent that comes with his felony conviction.

The public defender also pointed to Potter’s clean criminal background, noting only one prior harassment misdemeanor related to a 2010 case, when he was just 18 years old. Potter was convicted following immature conduct from the backseat of a vehicle, for which he received a $65 fine.

Herrold also said Potter’s restitution order to repay $59,668.81 in total, with $31,775.06 going to SCSD and $27,893.75 to its insurer, Travelers Indemnity Company, only furthered the deterrent effect, and would impact his lifestyle for years to come.

Prosecuting the case, US attorney David C. Waterman, pushed instead for a 26-month prison term, saying: “Defendant’s actions were not a one-time lapse in judgment. They were calculated, malicious, and seemingly motivated only by the defendant’s vindictiveness.”

He added: “The defendant’s attacks on SCSD’s systems are troubling not just because of the significant damage he caused – tens of thousands of dollars, without accounting for the unknown but clearly extensive disruption to teaching and school activities – but also because of the defendant’s motivations. 

“It appears the defendant repeatedly assaulted SCSD out of spite and pure maliciousness, despite knowing his actions would affect not only his former boss and IT colleagues, but also school faculty, administrators, and students.” ®