
Adam Johnston and Scott Spriggs may well go down as Ohioâs cleverest inmates.
The pair were incarcerated at Marion Correctional Institution, a low-security, 2,500-capacity facility which used inmate labor to recycle old computers as part of the non-profit RET3 program. Spriggs and Johnson managed to squirrel away dozens of RET3 parts and construct two new machines inside MCI.
Advertisement
According to the 50-page Ohio Inspector General report, the fully functional computers were âhidden on a plywood board in the ceiling above a closetâ and subsequently âconnected to [Ohio Department of Rehabilitation and Correctionâs] computer network.â But waitâthereâs more.

Somehow Spriggs and Johnson were able to run ethernet cables through the ceiling and down to the network switch, where it was connected to port 16, and the inmates were able to obtain internet access via credentials belonging to Ray Canterbury, a retired prison employee who now works for ODRC as a contractor. Once connected, they were able to download articles on âhome-made drugs, plastics, explosives, and credit cards.â Johnson, according to the report, also âaccessed an article online from the Bloomberg.com site detailing how to submit fraudulent tax returns and have the refunds wired to debit cards,â and stole the identity of another inmate and used his name and social security number to apply for five credit cards.
Advertisement
But wait, thereâs more.
As one does with an internet connection, the inmates used their unfettered access to download a shitload of porn, ferrying it to inmates via a thumb drive. But the inmate caught with said thumb drive told investigators that âit was not just pornographic movies. It was like the new releases, TV seriesâ as well as music.
Oh yes, thereâs still more.
On these two homebrew machines investigators found a litany of software useful for hacking and encryption, as well as brute force password crackers, an email spamming program, and a Java-based tool used to commit man-in-the-middle attacks. Likely this cornucopia of illicit programs was how the pair were able to issue âpasses for inmates to gain access to multiple areas within MCIâ and gain access to âunauthorized inmate records including disciplinary records, sentencing data, and inmate locations.â Ho-lee fuck.
Advertisement
Given that oversight at MCI is clearly lacking, the only way these two masterminds were caught at all was due to employee bandwidth throttling. Remember Ray Canterbury? An automated message informed MCI staff that on Friday July 3, 2015 âa computer operating through the ODRC computer network had exceeded a daily internet usage threshold.â The credentials were tied to Canterbury, who only worked Monday through Thursday. Considering the level of sneakiness required to build computers from scratch, run network cables, and steal someoneâs identity, not looking up employee schedules is a spectacular own-goal.
The ring of prisoners involved with this data heist have been shipped off to other facilities, and MCI are shouldering the blame for not only allowing it to happen, but failing to notify Ohio State Highway Patrol as regulations apparently dictate.
You can read the full report below:
Advertisement