topbanner_forum
  *

avatar image

Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
  • Saturday September 19, 2026, 4:19 pm
  • Proudly celebrating 15+ years online.
  • Donate now to become a lifetime supporting member of the site and get a non-expiring license key for all of our programs.
  • donate

Recent Posts

Pages: prev1 ... 254 255 256 257 258 [259] 260 261 262 263 264 ... 404next
6451
@Mouser - FWIW I am on record a few posts back for saying I thought the response seemed unusually harsh and possibly excessive based on the facts made public so far.

Which is pretty much where this keeps going in a circle:
Everyone seems to agree that the punishment was excessive.
Everyone seems to agrees that he totally screwed up.

Yet we're debating what exactly?

Exactly  ;D

Good point. I think we should get on to what students SHOULD do. i.e.

  • Report vulnerabilities
  • Don't report vulnerabilities
  • Sell exploits to pay for books & tuition
  • Publish the exploit on Twitter & PasteBin then watch the SHTF? :P

;D

I'm voting for #4 as it would be the most entertaining~! :P  :Thmbsup:


Relevant:



(Although in all reality, I still don't condone that type of stuff.  No matter how douchey one person (or part of the organization) may be, that kind of stuff gets people fired, harms totally unrelated people, and is just evil)
6452
Having said that if the university had any sense they would have invited him to help with checking the hole wa fixed after he reported it initially.

They wouldn't do that because they were already in CYA mode.
6453
^ And it's not like kick him to the curb and let him go somewhere else.  This has real academic and financial ramifications that are definitely disproportionate.
6454
I believe all agree the given punishment is not the right thing to do.

That's my point.  No one's arguing that what he did was wrong-headed and/or ill-advised, if not arguably wrong.  So why are we arguing that point?
6455
Going in again is where he made his mistake.

No one is saying what he did wasn't a mistake- he should have been informed as to such, and perhaps punitive measures taken based on the fact that he violated university rules, if indeed there was such in place.  But there is intent, and reasoned response.  That's what's being questioned.  The argument over whether running it was the wrong move is a straw man, IMO.
6456
When reached for comment Mr. Taza acknowledged mentioning police and legal consequences, but denied having made any threats, and suggested that Mr. Al-Khabaz had misunderstood his comments.

This is what makes me want to BBQ them instead.  This wasn't because of hacking or even running the software.  They were in CYA mode, and the uni is helping them to CYA.  What I'd like to see is the complaint that the professors voted on.  It wasn't as simple as this guy ran this... should we expel.  There's still CYA going on.  And that's the big problem that I see- this guy is getting crushed in the machinery of maintain contracts and CYA.
6457
Official Announcements / January 2013 Giveaway Winners!
« Last post by wraith808 on January 21, 2013, 01:54 PM »
Winners of the January 2013 Giveaway


January 2013 Giveaway

Supporting Members, you've got until the last day of the month to take advantage of this month's Discounts..

This Month's Special Discounts and Giveaways:



Winners of 'Page Four' (3):
  • sunlitlaz
  • Gretch68
  • longrun
Winners of 'Hard Disk Sentinel Pro' (10):
  • Ath
  • 4wd
  • Floppy
  • Phil White
  • Mongoplus
  • mdl
  • TurboJosh
  • jdakpiglet
  • Isaac Patch
  • Joe Hone
Winners of 'CintaNotes' (3):
  • erikts
  • Target
  • gno
Winners of 'Start Menu X' (5):
  • edbro
  • rno2
  • Kapiti
  • phillthefluter
  • JoTo
Winners of 'HippoEDIT' (5):
  • cacoder
  • peteg05
  • FranckW
  • DarkStar57
  • tkh7819


All winners are now being notified by email to their forum email address.  If you haven't received an email but your name is listed above, check spam filters and forum email address, and then mail [email protected] and let us know you never got any mail.  It can take a few days for companies to send you your serial number; if a few days pass and you haven't received it - send a reminder to the company email as noted in your winning notification email, or to us by replying to the email you received or to us directly.

Curious about how we award prizes?  See https://www.donation...dex.php?topic=1684.0 for a discussion about our custom prize optimizer utility. Winning something one month reduces your chances of winning the next month, and being helpful on the forum slightly increases your chances.
6458
All I'm responding to is the fact of it being illegal
The difference between scanning for publicly available information (domain owner, email addresses listed on web pages, administrative contacts, etc.) and vulnerability scanning is that information gathering is passive when you talk about publicly available information. Scanning a server can have real consequences on the server if the tool is not configured properly and is NOT passive.

All I'm saying is saying it was illegal, then using said threat to make him sign an NDA wasn't right by any means.  It's not illegal in and of itself, and trying to prosecute him for such would be legal handwaving.  Not saying a prosecutor wouldn't do it, but that's what it would be.
6459
Renegade, unless he was specifically granted permission to re-check the system, it is an illegal scan of the system. Many professional penetration testers have lost their jobs because of such an act.

The utility in question (Acunetix) scans for publicly available information about the system. It wasn't the smartest thing to do, but neither is it illegal- you can get the same information in other ways, and it's a white hat utility.  And the way they bullied him with incorrect information about the legality to get an NDA signed, then backed off... yeah...
6460
Living Room / Re: PowerPwn: Power strip by day, Hacking device by night!
« Last post by wraith808 on January 21, 2013, 10:06 AM »
Ok... that's just evil.  ;D
6461
Living Room / Re: PowerPwn: Power strip by day, Hacking device by night!
« Last post by wraith808 on January 20, 2013, 11:38 PM »
I'd hate to be a sysadmin right about now...
6462
Living Room / Re: PowerPwn: Power strip by day, Hacking device by night!
« Last post by wraith808 on January 20, 2013, 08:46 PM »
The former.  That's why I think it would be so insidious.
6463
Living Room / Re: PowerPwn: Power strip by day, Hacking device by night!
« Last post by wraith808 on January 20, 2013, 11:58 AM »
That is true... but there's a more insidious way to do it if you have inside help- one that's harder to trace.  Bridge the network connection on a legitimately connected computer...
6464
Living Room / Re: Random question for all you Doconians!
« Last post by wraith808 on January 20, 2013, 09:16 AM »
I work from home (at times), and could probably at this point do it permanently given enough justification, as many people where I work do it.  And I think it really depends on the employer; it took a while for them to get to this point, and a couple of the reasons were certain key people moving, and the fact that they have offices overseas, so one location just wasn't a viable argument anymore.

Of course, it also depends on the infrastructure and whether it will securely support remote work, and their IT department.  Not big technical hurdles to cross, but if they're not already in place, that business hurdle can be insurmountable.
6465
Living Room / Re: PowerPwn: Power strip by day, Hacking device by night!
« Last post by wraith808 on January 20, 2013, 09:11 AM »
Of course there's the simple piratebox that could be set up with this- a separate wireless network in the same building as your standard network...
6466
Living Room / Re: MEGA Almost Online - Misses Deadline
« Last post by wraith808 on January 19, 2013, 12:58 PM »
What is this?
6467
General Software Discussion / Re: WinPatrol Plus or AnVir Task Manager?
« Last post by wraith808 on January 18, 2013, 12:10 PM »
Well, yes and no.  A developer can create such obfuscation, but why bother when there's no rationale for it?  While it's entirely possible I'm loading four (4) malware elements, I'm a bit doubtful.

You don't even have to intentionally do it.  You can have your process started by rundll32 or svchost and not sign it, and then, though you can see something appear in the ROT, you don't have any idea of what it was.  Of course, none of these might be the reason- it's just that the question of it's as simple as extracting it from the process name or such information is not the be all to everything that runs.  I guess in the end, mwb said it best:

Have you let BillP (WinPatrol's author) know about the problem?  I have the impression that he's pretty responsive to feedback.

Because only he'd know how he was doing it and could only fix it if it was reported.
6468
General Software Discussion / Re: WinPatrol Plus or AnVir Task Manager?
« Last post by wraith808 on January 18, 2013, 10:42 AM »
Now, I know the program name can be either extracted from the application or from the system.

Incorrect.  Depending on how it's starting, those can be obfuscated.  It's one of the ways that malicious programs keep themselves out of the running objects table and out of task manager.
6469
General Software Discussion / Re: WinPatrol Plus or AnVir Task Manager?
« Last post by wraith808 on January 18, 2013, 10:05 AM »
I think the inability to provide information about programs isn't related to WinPatrol PLUS, but the program in question.  The information provided is an opt-in sort of thing from the developer; they have to provide that information.  There's some information that can be retrieved from your system, but a lot of it comes from the application in question.
6470
Living Room / Re: TOO AWESOME FOR WORDS!
« Last post by wraith808 on January 17, 2013, 11:03 PM »
The one not so awesome thing about the conclusion yet to come- I wonder if he's going to spend some time and money in court. :(
6471
Living Room / Re: TOO AWESOME FOR WORDS!
« Last post by wraith808 on January 17, 2013, 09:12 PM »
I saw an analysis on another site and a talk to the auditors that caught him- they said he could have gotten away with it with one minor change to his scheme.  Set up a server at home, and have them vpn into the server, then connect from there.
6472
Living Room / Re: TOO AWESOME FOR WORDS!
« Last post by wraith808 on January 17, 2013, 10:03 AM »
Let those who advocate for the "new service and information economy" ponder deeply the implications in this. :tellme: ;D

Inside of the "service" sector, we do need to point out the difference between PHYSICAL services and INTELLECTUAL services.

e.g. A lawyer provides both, but his physical presence is still required in court. A coder? Not so much. Those are purely intellectual services.

There's a big difference there in "services".

-- Just in case that wasn't already apparent/explicit/implicit/understood/whatever for anyone. ;)



Nice article-- and even nicer clarification. :)
6473
Announce Your Software/Service/Product / Re: The MagicRAR Drive Press Challenge
« Last post by wraith808 on January 15, 2013, 10:15 AM »
And yes, there are limits for the reason you stated.  It's an int (16 or 32-bit depending on the version of comctrl32.dll [ref].
That reference mentions 64k limit - I wonder if comctrl uses signed or unsigned integers? It's been ages, but I seem to recall doing 32k clamping?

I think they're signed, but don't quote me on that; it's been ages for me too other than dabbling here and there.
6474
General Software Discussion / Re: MagicRAR Drive Press - worth anything?
« Last post by wraith808 on January 15, 2013, 10:11 AM »
^ +1 and well said!  :Thmbsup:
6475
Announce Your Software/Service/Product / Re: The MagicRAR Drive Press Challenge
« Last post by wraith808 on January 15, 2013, 07:40 AM »
Oh, and one last thing: your progress bars are severely bugged - they reached 100% several minutes before the actual operation was done (bugged both in analyze as well as compress phase). Looks like you use Delphi, and I haven't touched that since Delphi2, so dunno if there's limits on it's current/max values... but iirc the win32 controls are/were clamped to pretty low values, meaning you definitely shouldn't be using currentBytes/maxBytes - or even currentNumFiles/maxNumFiles for modern filesystems.

Could also be C++ builder.  And yes, there are limits for the reason you stated.  It's an int (16 or 32-bit depending on the version of comctrl32.dll [ref].
Pages: prev1 ... 254 255 256 257 258 [259] 260 261 262 263 264 ... 404next