Developer gets 4 years for activating network "kill switch" to avenge his firing
a day ago
- #legal
- #cybersecurity
- #malware
- Davis Lu, a former developer at Eaton Corp., was sentenced to four years in prison for deploying malicious code.
- Lu created a 'kill switch' named 'IsDLEnabledinAD' that locked all users out of the network when his credentials were disabled.
- Other malicious codes, named 'Hakai' and 'HunShui,' caused infinite loops, deleted profiles, and crashed systems.
- The kill switch activated automatically when Lu was placed on leave in 2019, locking thousands of users globally.
- Eaton Corp. discovered the malicious code on a server only accessible by Lu, leading to his conviction.
- The company incurred significant costs to restore its network operations.