Earlier quoted context omitted.
>I personally think it's fair enough, the company claimed it was secure, therefore he hacked them. The police reacted, but when he could show it clearly it is absolutely not fair. The fair would be if the company had to show before the arrest that it was minimally secure. I mean they for sure had the HTTP transaction in their own logs - like GET document, response 200. They couldn't have reasonably in good faith clai…
Firstly, all those logs can be easily falsified and you're got absolutely no clue at all what that company showed to the police to convince them. So get off your extremely manufactured high horse. Secondly, even if you could somehow wave a magic wand and know the logs were real, you're approaching this as an expert and not as a layman. A crime was reported, it was followed up, an arrest was made (maybe that means som…
I wonder how many people who say, "just an arrest" have actually been through being arrested.