Underground: Hacking, madness and obsession on the electronic frontierDreyfus, Suelette
Science
Underground: Hacking, madness and obsession on the electronic frontier
Dreyfus, Suelette
Computer crimes -- Australia; Computer hackers -- Australia -- Biography; Computer security -- Australia
This led to a raging debate within the comp-sec industry. In one
corner, the cookbook purists said that bulletins such as Zardoz were
only going to be helpful if people were frank with each other. They
wanted people posting to Zardoz to provide detailed, step-by-step
explanations on how to exploit a particular security hole. Hackers
would always find out about bugs one way or another and the best way
to keep them out of your system was to secure it properly in the first
place. They wanted full disclosure.
In the other corner, the hard-line, command-and-control computer
security types argued that posting an announcement to Zardoz posed the
gravest of security risks. What if Zardoz fell into the wrong hands?
Why, any sixteen-year-old hacker would have step-by-step directions
showing how to break into thousands of individual computers! If you
had to reveal a security flaw--and the jury was still out in their
minds as to whether that was such a good idea--it should be done only
in the most oblique terms.
What the hard-liners failed to understand was that world-class hackers
like Electron could read the most oblique, carefully crafted Zardoz
postings and, within a matter of days if not hours, work out exactly
how to exploit the security hole hinted at in the text. After which
they could just as easily have written a cookbook version of the
security bug.
Most good hackers had come across one or two issues of Zardoz in their
travels, often while rummaging though the system administrator's mail
on a prestigious institution's computer. But no-one from the elite of
the Altos underground had a full archive of all the back issues. The
hacker who possessed that would have details of every major security
hole discovered by the world's best computer security minds since at
least 1988.
Like Zardoz, Deszip was well guarded. It was written by computer
security expert Dr Matthew Bishop, who worked at NASA's Research
Institute for Advanced Computer Science before taking up a teaching
position at Dartmouth, an Ivy League college in New Hampshire. The
United States government deemed Deszip's very fast encryption
algorithms to be so important, they were classified as armaments. It
was illegal to export them from the US.
Public-domain text, read in full here on John Shaqi.
Reviews
Reviews
No reviews yet
Be the first to share your thoughts on this work.
Elsewhere in the archive
Join the Discussion
Join the discussion
Sign in to leave a comment or review.
Sign InorCreate an account