Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Free Mafiaboy
Kevin Poulsen, SecurityFocus 2000-04-24

Busting 15-year-old script kiddies just makes us all look silly.

Comments Mode:
Free MafiaBoy 2000-04-24
Anonymous (1 replies)
The title of your article was very clever. It gives the impression that this case would be used by the author to wave the flag of the pro-hacker community. However, a quick read and one can immediately determine that this is not the case.

However, I believe you minimize the level of thought put behind MafiaBoy's efforts. He had to obtain the tools, come up with a plan and execute it. Maybe his goal was simply to see if it would work - maybe he just wanted to finally see the effects of his own deeds played out on the news. That sounds pretty similar to 15 year olds who throw theswitch on the train tracks or throw rocks onto the highway from the overpass. They just wanted to see what would happen and what some one's face would look like if they were nailed by my prank! This is serious and he should be prosecuted - as a juvenile - to the extent of the law. WHat's wrong with that?

Yes the Internet is vulnerable to these (and other) kinds of attacks - but it takes money to be able to mitigate risks. It is a risk management case study at it's purest. The money will not be spent until the costs of the damage done increases, or the costs of controls decreases. So far, it can't be demonstrated that the E-commerce community has lost a staggering amount of money from fraud, malfeasance or theft. Nor have E-Politics sites been particularly splattered by graffiti, defamation or defacing. There have been incidents and acts that have gained attention - but these have largely been an annoyance or an irritant.

It is incumbent upon the Internet security industry to educate users, providers and vendors about the risks that we currently face - and to prevent them. The Internet community needs to be educated toward providing thorough, preventative controls. The Internet security industry needs to be involved with business at the Risk Management level - to speak their language in order to faciltate change - to make the Internet world safer from hackers.

In a large part, this has been the biggest failure of the Internet security industry. The current state is that something really nasty could happen that could reach the level of serious business losses or bankrupcy.

Let's be honest - part of the blame would go to poor technical management, poor architecture and design, and poor education. The poor education portion of the blame pie - to a large extent - sits at the feet of the Internet security industry. We need to delivery the message much more effectively before the Internet community at large will listen.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/22/1494#1494
Some points: 2000-04-25
Anonymous (1 replies)
re 2000-04-26
Anonymous
Innocent Mind 2000-04-24
Anonymous (7 replies)
BUST who? 2000-04-25
Anonymous
Whats the point? [Re: Innocent Mind] 2000-04-25
<siliconx (at) netscape (dot) net [email concealed]> (3 replies)
Hrmmm, to a degree 2000-04-26
Anonymous
the tool 2000-04-26
Anonymous
re:Innocent mind 2000-04-26
Anonymous
You can't be serious! 2000-04-27
Anonymous (1 replies)
You can't be serious! 2000-05-08
Anonymous
Innocent mind 2000-05-01
Anonymous
Innocent Mind 2000-05-07
Anonymous
Re: Innocent Mind 2007-06-01
Kifferd
more than just mafiaboys fault 2000-04-25
Anonymous
Free Mafiaboy 2000-04-25
Anonymous
Easy attack? Anyone could do it? 2000-04-25
Anonymous (2 replies)
If.. 2000-04-26
Anonymous
guilty? right. 2000-04-25
Anonymous
clueless media 2000-04-25
Anonymous
NO WAY 2000-04-25
Anonymous
Free him? Huh? 2000-04-26
Anonymous
Mafiaboy 2000-04-26
Anonymous
Give me a break 2000-04-26
Anonymous (2 replies)
Re-read the article 2000-04-26
Anonymous
Yes, it DOES make you look silly. 2000-04-26
Anonymous (1 replies)
Yes, it DOES make you look silly. 2000-05-11
Anonymous
He's not Mafia Boy! I am! 2000-04-28
Anonymous (1 replies)
Media, 9yrold hacker, mafiaCRAP 2000-04-29
Anonymous
Thank you. 2000-04-29
Anonymous
stoooooooooooopid 2000-05-01
Anonymous
Unreal 2000-05-04
Anonymous
Hackers in the term of the word 2000-05-04
Anonymous
Is against the law 2000-05-11
Anonymous
Pretty sad., 2000-05-14
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus