A former IT employee was sentenced after repeatedly breaking into Iowa's Saydel Community School District and disrupting school systems for more than a year after being fired. Prosecutors said he kept more than 300 district usernames and passwords, then used that access between May 2023 and January 2025 to delete the district's Facebook page, tamper with Apple School Manager, access Google and Gmail accounts, and delete Schoology and Gmail accounts, causing teaching disruptions and remediation costs.
Why it matters: This is a clear insider-threat case showing how retained credentials and privileged access can lead to long-running disruption at schools. Education and government IT teams should immediately review offboarding, disable former staff access, rotate passwords and tokens, and audit admin accounts tied to third-party platforms.
Lawrence Abrams
2026.06.13
99% relevant
This article is the same underlying event and provides the sentencing outcome, prison term, restitution amount, attack timeline, affected services including Apple School Manager, Google, Schoology, and Facebook, plus the detail that investigators recovered district credentials from a USB drive.
2026.06.12
100% relevant
This article establishes the story by providing the sentencing outcome and detailed timeline of the former employee's credential theft, repeated intrusions, and operational impact on the district.
← Back to all stories