Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Blaming the Good Samaritan
Houston Carr, 2008-09-26

In the early 90's, I attended an academic conference in Hawaii. At one presentation, a colleague from the University of California at Berkeley whom I'll refer to as "the supervisor," told a story of young hackers, who he referred to as the Urchins.

Comments Mode:
Blaming the Good Samaritan 2008-09-26
Anonymous (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous (3 replies)
Re: Re: Blaming the Good Samaritan 2008-10-14
The Better Samaritan
disagree with premise 2008-09-27
Anonymous (3 replies)
Re: disagree with premise 2008-10-01
Anonymous
Re: disagree with premise 2008-10-04
Anonymous
Re: disagree with premise 2008-10-10
Anonymous
Blaming the Good Samaritan 2008-09-27
Anonymous
Blaming the Good Samaritan 2008-09-28
RU_Trustified
Where to draw the line 2008-09-29
Daniel Thomas (1 replies)
Re: Where to draw the line 2008-10-01
Anonymous
Blaming the Good Samaritan 2008-09-29
Anonymous (2 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous (2 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous
Blaming the Good Samaritan 2008-09-30
Darin (4 replies)
Re: Blaming the Good Samaritan 2008-09-30
Anonymous
Re: Blaming the Good Samaritan 2008-09-30
RU_Trustified (2 replies)
Re: Re: Blaming the Good Samaritan 2008-10-01
Anonymous (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
Anonymous
Re: Blaming the Good Samaritan 2008-10-03
Anonymous
Blaming the Good Samaritan 2008-09-30
Anonymous
Blaming the Good Samaritan 2008-09-30
Brandon (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
Teknohazard
Blaming the Good Samaritan 2008-09-30
Mr. Mike (1 replies)
Re: Blaming the Good Samaritan 2008-10-01
R... (1 replies)
Thin Skull Rule 2008-10-17
Anonymous
Good Samaritan? Houston Carr shouldnt be allowed to post here again 2008-10-05
Anonymous (1 replies)
Re: Good Samaritan? Houston Carr shouldnt be allowed to post here again 2008-10-06
Anonymous (2 replies)
Re: Re: Good Samaritan? Houston Carr shouldnt be allowed to post here again 2008-11-06
Jim
Sorry for the late post.

The law who's traditional stance on the definitions of trespass and property have not fully adapted to apply to technology is taking a lop-sided balance of power to prosecute those who attempt to penetrate a system, but does nothing to those who do not protect the system. The laws must be changed and cannot apply to this argument, therefore this becomes an ethical argument.

In an online world similar to the Wild West with little rules and little law, it can sometimes be necessary for Good Samaritans to force others to perform the actions beneficial to the majority of society. Pen testing and reporting to companies/news media the issues found is therefore necessary to protect the whole of society. Banks (who never report security breaches) should be obligated to fix vulnerabilities to protect customer's data. It is unreasonable for banks to expect crackers to stay out, while customers expect banks to ensure their data is safe.

Security Focus (and as the owner Symantec) is about the furthering of security. Simply ignoring the issue isn't going to fix the underlying problems of companies not closing security holes. The law is slow to adapt, and the business world would rather make money than spend it to fix the problems. That is what this article is about, and Security Focus & Carr should be applauded for educating others of these lapses society.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/481/35231#35231
Blaming the "Cracker" 2008-10-11
Anonymous
Time to grow up 2008-10-11
Anonymous
Tresspassing 2008-10-28
Jake Brodsky







 

Privacy Statement
Copyright 2009, SecurityFocus