Kandula Nagaraju, a 39-year-old Indian national who worked at NCS (National Computer Systems) in Singapore, was given a two-year-eight-month sentence after the courts found him guilty of unauthorized access to computer material. According toCNA, Nagaraju illegally accessed his former employer’s systems for several months after his termination, running scripts that he could use to delete its test servers. After he completed testing, he deployed the scripts overnight, resulting in the complete removal of all 180 company test servers.

NCS is a major IT services firm in South-East Asia and is headquartered in Singapore. It also has a presence across Australia, Hong Kong,China, and India, with over 13,000 employees. Nagaraju worked in the company’s quality assurance computer system, where he and his team used test servers to run apps before they were deployed to customers and end users.

Delete

*Wells Fargo fires mouse-jiggling employees

Woman busted smuggling 350 Nintendo Switch cardsChinese engineer accused of stealing Google secrets

Jowi Morales

Nagaraju’s contract was terminated in October 2022, allegedly due to poor performance, although he stayed in his office until June 30, 2025. Nagaraju said he was confused and upset about the firing, especially as he felt he was performing well in his position. But since he didn’t have another job lined up in Singapore after that, he left the nation-state and returned to his home country.

Although Nagaraju was no longer connected with NCS, he discovered that his credentials remained valid, giving him remote access to the company’s servers. Between January and March 2023, he hatched a plan of revenge against his former employer. He Googled for server delete scripts during this time and, using his still valid credentials, began testing them on NCS’s test servers.

None of his former team members were aware of this, allowing him to access the system over 13 times in March of 2023 alone. It was during this time that he perfected and hid the deletionscripts. Finally, on March 18 and 19, he activated the scripts, which began to delete the servers one at a time to minimize suspicion.

When the NCS QA team logged in on March 20, they discovered that their test servers were inaccessible. It was during their troubleshooting that they found out that all 180 of their test servers were deleted.

NCS claims that the test servers were standalone systems used for new apps. It also said that no sensitive information was stored on the servers, so company and client data remains safe. However, it still cost the company the equivalent of around $678,000 to remedy the situation.

Get Tom’s Hardware’s best news and in-depth reviews, straight to your inbox.

The company reported the incident to the police in April 2023, after it had presumably reconstructed what happened to the servers. Since Nagaraju returned to Singapore in February 2023, the police tracked his location through the IP addresses the company submitted, and seized hislaptop. This was when the authorities found the scripts he used on NCS’s servers, as well as hisGooglesearch history for scripts to delete virtual servers.

“Due to a human oversight in administering the standalone test environment, the perpetrator’s access to the test environment wasn’t terminated immediately upon departure from the company,” NCIS said in a statement toCNA. However, the company has “stringent processes and controls in place, and [stated] that it will continue to monitor and enhance them.”

Jowi Morales is a tech enthusiast with years of experience working in the industry. He’s been writing with several tech publications since 2021, where he’s been interested in tech hardware and consumer electronics.