Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
AtStake jilts Phiber Optik
Kevin Poulsen, SecurityFocus 2000-09-01

The corporation formerly known as the L0pht courts Mark Abene, balks at his hacker past.

Comments Mode:
Their debt has been paid 2000-09-01
Alascom (paw (at) paw (dot) org [email concealed]) (3 replies)
Agreed, this is crap! 2000-09-01
BLKMGK (1 replies)
This makes me sick to my stomach 2000-09-02
Termy (at) ecad (dot) org [email concealed]
Their debt has been paid (child molester babysits kids) 2000-09-03
mujahadin (at) hushmail (dot) com [email concealed]
A presidents past 2000-09-05
f3d
Hyprocracy and prejudice 2000-09-01
Ichinin (Ichinin (at) suespammers (dot) org [email concealed])
Kevin, what the hell? 2000-09-01
Dr SuSE
More than that's unfair... 2000-09-01
uucpbrain (1 replies)
restoration of civil rights 2000-09-01
grayarea (at) html (dot) net [email concealed] (1 replies)
restoration of civil rights 2000-09-01
mb (at) gti (dot) net [email concealed]
Ha 2000-09-01
Z0mn
What do you mean, they didn't know?!? 2000-09-01
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]>
So what?!? 2000-09-01
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]>
Is all about the money 2000-09-01
Legion
Why *did* Space Rogue leave @Stake 2000-09-01
CString (1 replies)
Why *did* Space Rogue leave @Stake 2000-09-05
Space Rogue
Why should @Stake hire him? 2000-09-01
livid (1 replies)
Why should @Stake hire him? (why shouldn't they?) 2000-09-02
hal0joneZ (1 replies)
Why should @Stake hire him? (why shouldn't they?) 2000-09-04
joe mama (1 replies)
Why should @Stake be willing to hire people with convictions? 2000-09-04
Halo (1 replies)
Why should @Stake be willing to hire people with convictions? 2000-09-05
Even if Abene's hiring was declined solely for media reasons, what of it? A company has the right not to hire anyone who will scare away clients. By hiring people they know to have a criminal record, they would put themselves in a bad position that would probably lose more business than his expertise could draw.

There are a lot of other reasons to deny a convicted cracker this sort of job, among them the fact that he's lawsuit bait. "Negligence" is a word likely to come up if anything ever goes wrong, and if the company hires criminals it gives the plaintiffs some pretty hefty cannonballs to fire.

Let me put it this way: If a jewelry store reported a robbery and it was found to have hired three known jewel thieves as appraisers (who would probably be good at the job) despite knowing their records, wouldn't any police officer's first thought be "inside job"? Would an insurance company pay out for what would look to them like a case of either fraud or negligence?

More to the point, imagine a similar case involving that jewelry store's security company. Say it was discovered that the company that installed their alarms had hired people it knew to be ex-thieves. Well, the jewelry store is still probably going to lose out on the insurance money, so take three guesses who they'll go after to make up the loss.

@stake can't afford to be the security company who gets sued for damages when a client gets cracked. No security is perfect, but no one introduces more holes than they have to, and there are incredible risks for anyone who does. Sooner or later one of their clients will probably experience some sort of incident, simply because these things aren't 100% avoidable; when that happens, they'll need to show that they did everything possible to protect the client, and didn't place them in any additional jeopardy whatsoever.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/79/3287#3287
heh... lamers... 2000-09-02
DAQ42 (2 replies)
shrug 2000-09-02
re: heh... lamers... 2000-09-02
medivh
The "clean room" stupidity..... 2000-09-02
Mike Roadancer (2 replies)
Hypocrisy 2000-09-02
The Dodger (1 replies)
Hypocrisy 2000-09-02
Me
re: The 'clean room' 2000-09-02
medivh
The l0pht goes soft 2000-09-02
servertr0uble
Amen 2000-09-02
marahnemo
Hiring Hackers 2000-09-03
Graham Burgess
A bit nieve 2000-09-03
Jeffery McLean (1 replies)
Weird 2000-09-04
Sacha Ligthert
Damage: L0pht vs Abene 2000-09-04
dmp
Elite Hackers are rats 2000-09-05
Mike
Binary skill? Get real. 2000-09-06
ph3nom
A Text On The Topic 2000-09-09
PsychoSpy







 

Privacy Statement
Copyright 2009, SecurityFocus