
-----------------------------------
Jah Ji
Wed 08 Mar, 2006

'Computer terrorist' teaches anti-hacking
-----------------------------------
JOHANNESBURG,<b style="color:#FFA34F"></b> South Africa <b style="color:#FFA34F"></b>(Reuters)<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b> He can find George Bush senior's social security number and Leonardo DiCaprio's mother's maiden name in under 15 seconds,<b style="color:#FFA34F"></b> and led the FBI on a three-year manhunt as he hacked his way into the world's biggest firms.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"Computer terrorist"<b style="color:#FFA34F"></b> Kevin Mitnick is one of the world's most famous computer hackers and became a cause celebre after breaking into networks and stealing software at companies including Sun Microsystems and Motorola.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Now Mitnick,<b style="color:#FFA34F"></b> from the United States,<b style="color:#FFA34F"></b> travels the world teaching companies how to guard against people just like him.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
He argues that while sophisticated technology can help keep networks clean from viruses,<b style="color:#FFA34F"></b> it is useless if hackers can con a company's employees into handing over passwords by posing,<b style="color:#FFA34F"></b> for example,<b style="color:#FFA34F"></b> as colleagues.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"Hackers find the hole in the human firewall,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> Mitnick told an information technology security conference on Wednesday in Johannesburg,<b style="color:#FFA34F"></b> South Africa.<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>"What's the biggest hole?<b style="color:#FFA34F"></b> It's the illusion of invulnerability.<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"Social engineering"<b style="color:#FFA34F"></b> <b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b> as hackers call tricking people <b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b> formed the main thrust of his career,<b style="color:#FFA34F"></b> in which he penetrated some of the world's most sophisticated systems often by persuading unwitting staff to hand over top-secret information.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Mitnick,<b style="color:#FFA34F"></b> now in his early 40s,<b style="color:#FFA34F"></b> started hacking phone systems in his teens before moving on to computers,<b style="color:#FFA34F"></b> but says he never stole money or caused deliberate damage and hacked just for the thrill of it.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
The hobby earned him a place on the FBI's most wanted list and an almost five-year stint in U.S.<b style="color:#FFA34F"></b> jail in the 1990s.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
On his release he was initially banned from surfing the Web,<b style="color:#FFA34F"></b> and has since written two books about hacking and started an IT security consulting firm.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Now the companies he once stole secrets from pay him to hack into their systems and show them how to improve security.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Mitnick said hackers conduct meticulous research into companies and their staff,<b style="color:#FFA34F"></b> even swotting up on the hobbies of target employees to better win their trust.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
And firms underestimate how easily hackers can get hold of personal information <b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b> like driver's licence numbers,<b style="color:#FFA34F"></b> social security numbers and mothers'<b style="color:#FFA34F"></b> maiden names <b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b>-<b style="color:#FFA34F"></b> which are often used by banks or other companies to screen customers.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
To prove it at the conference,<b style="color:#FFA34F"></b> he found former U.S.<b style="color:#FFA34F"></b> President George Bush's social security number,<b style="color:#FFA34F"></b> driver's licence number and the maiden name of Hollywood actor DiCaprio's mother within 15 seconds.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"The problem is that it is a good human quality to give people the benefit of the doubt,<b style="color:#FFA34F"></b> and unless you've been burned,<b style="color:#FFA34F"></b> or you're paranoid,<b style="color:#FFA34F"></b> then you will probably trust them,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> he said.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
Companies must guard against smooth-talking hackers by making their staff aware of the risks,<b style="color:#FFA34F"></b> developing simple company policies on data protection,<b style="color:#FFA34F"></b> and getting the best technology,<b style="color:#FFA34F"></b> which will at least <b style="color:#FFA34F"></b>"raise the bar"<b style="color:#FFA34F"></b> for hackers.<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b><b style="color:#FFA34F"></b>
<b style="color:#FFA34F"></b>"It's not about being paranoid,<b style="color:#FFA34F"></b> but it's about being very aware,<b style="color:#FFA34F"></b> and very alert,<b style="color:#FFA34F"></b>"<b style="color:#FFA34F"></b> he said.<b style="color:#FFA34F"></b>

-----------------------------------
Fak3d
Wed 08 Mar, 2006


-----------------------------------
I have read his book the art of deception,<b style="color:#FFA34F"></b> its real good.<b style="color:#FFA34F"></b>
