Slashdot Log In
Stupid Hacker Tricks - The Folly of Youth
Posted by
timothy
on Tue May 06, 2008 07:41 AM
from the reap-and-sow dept.
from the reap-and-sow dept.
N_burnsy points out an article in Computerworld which "profiles several youthful hackers, some still serving prison time, some free, who have been caught indulging in some fairly serious cybercrime, and looks at their crimes and the lessons they have (or have not yet) learned.
Starting with Farid 'Diab10' Essebar, currently a guest of the Moroccan prison system, who wrote and distributed the Mytob, Rbot, and Zotob botnet Trojans. There's Ivan Maksakov, Alexander Petrov, and Denis Stepanov, all guests of the Russian penal system, sentenced to eight years at hard labor for creating a botnet to engage in DDoS (distributed denial-of-service) attacks to blackmail online gambling sites based in the UK, threatening to take the sites down during major sporting events. Then there's Shawn Nematbakhsh who was a little too eager to prove a point about the electronic balloting system that the University of California employed to hold student council elections, by writing a script that cast 800 votes for a fictitious candidate named American Ninja." Not everyone on the list is exactly youthful, and the range of offenses shows how lumpy this area is both to the law and in public perception.
Related Stories
Submission: Stupid hacker tricks: The folly of youth by Anonymous Coward
This discussion has been archived.
No new comments can be posted.
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Full
Abbreviated
Hidden
Loading... please wait.
Link without 5 pages of ads... (Score:5, Informative)
Re: (Score:2)
Re: (Score:2, Funny)
It didn't go down. =(
~Jarik
Re: (Score:2)
Student elections? (Score:5, Insightful)
There is no justice in the world. That kid should have been given a fucking medal.
Re:Student elections? (Score:5, Insightful)
Parent
Re:Student elections? (Score:4, Insightful)
Parent
Re: (Score:3, Informative)
Re:Student elections? (Score:5, Insightful)
Parent
Re:Student elections? (Score:5, Funny)
Parent
Re:Student elections? (Score:5, Funny)
Parent
Re:Student elections? (Score:5, Interesting)
Except that he explicitly says he was doing no such thing in TFA:
If he had really been interested in fixing the flaw, he could have brought it to the administration's attention in a much better way that would have avoided him having to do community service, and not screwed up the election.
Your point is still valid, though. When I was an undergrad, a friend of mine discovered that the primary key to the LDAP student/faculty directory was the same number that was encoded on our ID cards, the result being that we could create fake ID cards for anyone in the directory (and thus gain their building privileges, have access to the accounts linked to the card, etc.). He went to the administration with the information, and they reissued cards to the entire student body. Then, they proceeded to start a judicial investigation against him. Thankfully, nothing ever came of it, but it does show the tendency of institutions to punish those who are actually trying to help them.
Parent
Re:Student elections? (Score:4, Insightful)
The point of civil disobedience is not to avoid being caught. It is to be caught in a way that proves the system is corrupt. Punishment is critical to the effectiveness of civil disobedience as a strategy to change the world.
It's also critical for holding back the tide of unthinking self-righteousness in the world. If good intentions were an absolute defense, there would be no end to the crimes people would commit with complete assurance they are on the side of right.
Giving this guy a slap on the wrist is the right thing to do; it serves the purpose of having the rule without doing more damage than breaking the rule did. The rules are there for the guidance of the wise and the protection of fools. The wise might choose to accept punishment in service to a higher cause; the foolish shouldn't be punished more than is necessary to set them on the right track.
Parent
Ok so (Score:3, Interesting)
If you aren't ok with me going through your things without permission, I'd have to ask why you are ok with with breaking in to someone else's stuff. You can't have it both ways, if your stuff isn't fair game, why is their stuff fair
Re: (Score:2)
Just shows that even moderators have not RTFA
Re: (Score:2, Funny)
Re:Student elections? (Score:4, Informative)
Yes, he was such a noble crusader....
Parent
That's why whitehats are becoming rare (Score:5, Insightful)
I think that is why there are less reports about benevolent hackers pointing out security flaws these days, but lots of reports about botnets for spamming and DDOS activities.
Parent
Re:Student elections? (Score:5, Funny)
Blade/face bijection
Halt candidate/follicle
Ninja insurrection
Burma Shave
Parent
Another one in the taxalotl tank (Score:2)
Did not read the fine article (Score:2)
One thing that really has hit me in the past however is the inappropriate almost military level responses to computer crime in several cases. For example, a few years back the DVD Jon raid involved an international paramilitary team to catch a single unarmed teenager.
Re: (Score:2, Informative)
Typo in TFA (Score:4, Insightful)
So what's the new word for someone who writes quick and dirty code that actualy runs, or changes a transistor radio into a guitar fuzzbox?
BTW, if you wrote TFA shame on you! the proper word is "script kiddie", cyberglar, cyber burglar, "computer criminal". Not "hacker" for God's sake. Just because Joe Sixpack thinks a "hacker" is a criminal and RAM is a brand of truck doesn't mean we should share in their ignorance.
"I used to be a gay hacker, now I'm only a happy nerd"
-mcgrew
*Yes, I just coined that word. So sue me.
Re: (Score:2)
Re: (Score:2)
Let's do a quick headcount. "Who here is The One." *counts about 50,000 slashdotters before giving up*
That's alot of The One(s). Next we need to somehow semantically link "The One" with 'There can be only One" and munch popcorn as the epic geek-fight (with interesting gadgets!) ensues.
Good idea somersault, have some of my imaginary popcorn for your efforts.
Re: (Score:2)
There can only be one one - though one squared is still one, and 1 ^ 50,000 is still one, so I think we'll be okay, somehow. The geek fight is a good idea though. My weapon of choice is an Amiga A1000, maye with a 21" CRT for backup (only really good for when you're above your opponent of course)
Re: (Score:2, Informative)
I have mod points and I didn't know what to do. I thought I'd give advice instead of modding:
Stick to the point.
I know I'm off-topic.
Re:Typo in TFA (Score:5, Insightful)
That was the point. Like it or not, people who used to be "gay" in a non-homosexual sense are no longer able to use that word that way. "Dick" was a common name when Batman and Robin came out in the 40s (and Dick Tracy), now nobody would call their child "Dick". Language changes whether we want it to or not.
"Hacker" has become something that benevolent hackers can no longer call themselves, no matter how we feel about it.
Parent
Re:Typo in TFA (Score:5, Insightful)
Parent
Re: (Score:2)
BTW, if you wrote TFA shame on you! the proper word is "script kiddie", cyberglar, cyber burglar, "computer criminal". Not "hacker" for God's sake.
I never understand this strange attachment people have to word definitions. Give it up, the word also means "computer criminal".
Just because Joe Sixpack thinks a "hacker" is a criminal and RAM is a brand of truck doesn't mean we should share in their ignorance.
This is the thing I also don't understand. "Joe Sixpack" is the guy defining the language, not people
Re: (Score:2)
There are many institutional gatekeepers in this world, and we use the mastery of standard English as a basis for making distinctions about who gets to
Re: (Score:3)
GP is absolutely correct in his rant, and if he's guilty of ANYTHING it's bringing up something WE ALREADY ALL (should) KNOW.
If you think the GP is incorrect in his assertion that the word 'hacker' has been used out-of-context by a source that should know better, then you've reached a new level of fail on slashdot.
Personally, I'm offended by the constant creep of middle managers and o
All I can say is (Score:2)
"catch me if you can" (Score:5, Interesting)
1. convict them and put them in prison
2. take them out and convert their sentence into useful work for the federal government. if they f**k up, back in the hole they go
when some guy finds a chink in a voting system and exploits it, yes, he's done wrong, but he's also done society a service, no matter what his intentions were. this doesn't necessarily need to be rewarded, but it does need to be recognized as useful work in pursuit of a useful goal for society. these individuals, however morally and ethically flawed, still have use to society
what they need is supervision, like frank abegnale, and skills that previously went to petty vandalism and self-indulgence at the expense of society can instead be converted into useful work for society. these individual must be supervised, since their ability to form ethical and moral decisions has obviously been shown to be severely compromised, but you will note that frank abegnale today is currently very wealthy and quite the free man, and all of his current wealth accumulated through honest work. rehab is not only possible, but it is also profitable, for the individual who needs an ethical and moral correction, and society at large
Re: (Score:3, Insightful)
4. The other half million blokes in prison still get to rot.
Perhaps it might make more sense to attack the problems in the prison system at a lower level?
Re: (Score:3, Insightful)
Re: (Score:3, Insightful)
Re: (Score:3, Insightful)
you don't understand the issues (Score:2)
a crook can't steal a job from an honest man if the job in question doesn't exist. the crooks in question here are doing jobs no one else is doing. otherwise, their exploit wouldn't exist
"4. The other half million blokes in prison still get to rot."
yes, which is exactly what they deserve. robbing banks and raping women isn't very new or very interesting. discovering a technological exploit no one else is doing IS interesting and useful
Wrong vote (Score:3, Funny)
Too much "CSI." (Score:5, Funny)
This whole article is like that.
Pure genius (Score:5, Interesting)
American Ninja? (Score:4, Funny)
P.S. (on
I wonder what would that Rinzai guy show to a sexual predator.
Don't Blame Me (Score:2)
Morris link shows they are right (Score:2)
Re: (Score:2)
OK, who here over 40 never did anything illegal? (Score:4, Interesting)
* were not skilled enough to avoid being caught and you knew it
* had VERY good morals
* didn't have an opportunity
Before the mid-80s "casual" hacking was just as likely to get you a job as it was punishment. By the late '80s and '90s there were much better ways to prove you were good and too many people were misusing other's computer for purposes other than "because they could" or "because it was cool" or to save a few bucks on long distance phone calls.
Re: (Score:2)
Re:Bah Hackers (Score:5, Insightful)
If you really want to change that perception, plan to run full page ads in every major newspaper (because the people who misuse the term are less likely, imo, to get their news online) and launch a multi-million dollar TV campaign in every major market for a few years. Even then, you'll still be vexed by people who will use the old term, but having run the campaign, you'll be able to elevate your level of righteous indignation.
Then you might be able to start a new affinity group: Mankind for the Ethical Treatment of Hackers (METH).
Parent
Re: (Score:2)