
He Wanted to Teach His Company a Lesson. It Backfired Spectacularly ❌ Darknet Diaries 178: Ubiquiti
Source: YouTube · Jack Rhysider · published Aug 4, 2026 · 36:06
[BLUF]
Nickolas Sharp, a cloud engineer at Ubiquiti, stole proprietary source code and attempted to extort the company because he felt undervalued and wanted to expose perceived security failures 10:26. His scheme collapsed when forensic evidence linked him to the attack, leading to his arrest and a six-year prison sentence 34:35.
Key Takeaways:
• Nick’s motivation stemmed from resentment over stalled career growth and a belief that Ubiquiti ignored his security warnings, prompting him to stage a "wake-up call" 05:51.
• He exploited his high-level access to clone over 100 private repositories from GitHub, intending to prove how easily the company could be breached 16:39.
• After failing to receive a ransom payment of 25 Bitcoin, Nick leaked the stolen data publicly and contacted journalist Brian Krebs to expose Ubiquiti’s alleged lies to customers 26:15.
• The public fallout caused Ubiquiti’s stock to crash by 20%, wiping out $4 billion in market value, but also drew FBI attention to Nick’s digital footprint 33:50.
• Forensic investigators identified Nick through his home router’s MAC address and VPN purchase history, disproving his claims that he was being framed 30:00.
• Despite pleading guilty, Nick argued his actions were an "unsanctioned security drill," but the judge sentenced him to six years in prison for wire fraud and computer damage 35:01.
Closing Statement
This case illustrates how insider threats can cause catastrophic financial and reputational damage, and how even sophisticated attempts to conceal identity often fail against modern forensic techniques.
Sources:
- 10:26 Discussion of Nick's motivation to demonstrate security vulnerabilities to management.
- 16:39 Details of Nick cloning private repositories and source code from GitHub.
- 26:15 Nick's reaction to the failed ransom and his decision to leak data publicly.
- 33:50 The financial impact on Ubiquiti following the public exposure of the breach.
- 30:00 How forensic analysis of router logs and VPN purchases identified Nick as the perpetrator.
- 35:01 The final sentencing and Nick's claim that his actions were a security drill.
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
JACK: I’m just gonna get right into it. Yeah,
I don't even want to ask your name 'cause I don't even want to know who’s doing this,
but tell me the first time you did this. SPEAKER: I started a new job a couple of months
back, and it’s entirely remote work from home except for the occasional trip to the office.
There may be eight people in the company who work at the main office that would recognize me at any
given point. So, I saw an opportunity and decided to run with it. [Music] I was gonna try something
I had never done before and steal food, 'cause this is a famous office thing. I’m a university
student at the same time as being a full-time employee. So, I wanted to like — everyone
talks about this as a thing in the office; might as well become a member of the professional
wo…