Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Blaming the Good Samaritan
Houston Carr, 2008-09-26

In the early 90's, I attended an academic conference in Hawaii. At one presentation, a colleague from the University of California at Berkeley whom I'll refer to as "the supervisor," told a story of young hackers, who he referred to as the Urchins.

Comments Mode:
Blaming the Good Samaritan 2008-09-26
Anonymous (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous (3 replies)
Re: Re: Blaming the Good Samaritan 2008-10-14
The Better Samaritan
disagree with premise 2008-09-27
Anonymous (3 replies)
Re: disagree with premise 2008-10-01
Anonymous
Re: disagree with premise 2008-10-04
Anonymous
Re: disagree with premise 2008-10-10
Anonymous
Blaming the Good Samaritan 2008-09-27
Anonymous
Blaming the Good Samaritan 2008-09-28
RU_Trustified
Where to draw the line 2008-09-29
Daniel Thomas (1 replies)
Re: Where to draw the line 2008-10-01
Anonymous
Blaming the Good Samaritan 2008-09-29
Anonymous (2 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous (2 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous
Blaming the Good Samaritan 2008-09-30
Darin (4 replies)
Re: Blaming the Good Samaritan 2008-09-30
Anonymous
Re: Blaming the Good Samaritan 2008-09-30
RU_Trustified (2 replies)
Re: Re: Blaming the Good Samaritan 2008-10-01
Anonymous (1 replies)
>>>>
On the other hand, if a student suspects that the private data of his and fellow students are not being protected in a responsible manner, he should just live with it?
>>>>

Good point, no, he shouldn't. He should let whoever is in charge of the computer systems know what he suspects. Tell them that he's capable of testing the network. If they refuse, he should go to the dean. If the dean refuses, he should go to the school paper and local media.

It's really unacceptable to just bust in and then try to make the case that you're trying to help. Case in point, from my apartment in Manhattan, I can see about 60 wireless APs. About half of them don't even employ WEP. I found one of my neighbor's names in the SSID - no WEP, so I brought it to his attention and told him of the issue. He fixed it.

I did not hop onto his network, sniff his email traffic, bust into his workstation, and then show him what I did to "help him out."

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/481/35183#35183
Re: Blaming the Good Samaritan 2008-10-01
Anonymous
Re: Blaming the Good Samaritan 2008-10-03
Anonymous
Blaming the Good Samaritan 2008-09-30
Anonymous
Blaming the Good Samaritan 2008-09-30
Brandon (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
Teknohazard
Blaming the Good Samaritan 2008-09-30
Mr. Mike (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
R... (1 replies)
Thin Skull Rule 2008-10-17
Anonymous
Blaming the "Cracker" 2008-10-11
Anonymous
Time to grow up 2008-10-11
Anonymous
Tresspassing 2008-10-28
Jake Brodsky







 

Privacy Statement
Copyright 2009, SecurityFocus