funsec mailing list archives

'So easy a caveman can do it.'


From: "Paul Ferguson" <fergdawg () netzero net>
Date: Wed, 26 Sep 2007 17:08:09 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Via InformationWeek.

[snip]

Convicted hacker Robert Moore, who is set to go to federal prison this
week, says breaking into 15 telecommunications companies and hundreds of
businesses worldwide was incredibly easy because simple IT mistakes left
gaping technical holes.

Moore, 23, of Spokane, Wash., pleaded guilty to conspiracy to commit
computer fraud and is slated to begin his two-year sentence on Thursday for
his part in a scheme to steal voice over IP services and sell them through
a separate company. While prosecutors call co-conspirator Edwin Pena the
mastermind of the operation, Moore acted as the hacker, admittedly scanning
and breaking into telecom companies and other corporations around the
world.

"It's so easy. It's so easy a caveman can do it," Moore told
InformationWeek, laughing. "When you've got that many computers at your
fingertips, you'd be surprised how many are insecure."

Pena, who is charged with acting as a legitimate wholesaler of
Internet-based phone services as part of what the government called a
"sophisticated fraud," fled the country a year ago and is wanted as a
fugitive. Assistant U.S. Attorney Erez Liebermann said Pena allegedly stole
and then sold more than 10 million minutes of service at deeply discounted
rates, netting more than $1 million from the scheme.

[snip]

More:
http://www.informationweek.com/story/showArticle.jhtml?articleID=202101781

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFG+pH1q1pz9mNUZTMRAmhvAKCcVEm6VuFEzf9MGqzn9GmzPb5YNgCcDw2f
JNU4Yr/QNMvtFg0vhRQT4vM=
=HVZ9
-----END PGP SIGNATURE-----



--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: