GhostShell hacker leaks 39M accounts in security “protest”
1–10 of 31 posts
Re: GhostShell hacker leaks 39M accounts in security “protest”
#2Re: GhostShell hacker leaks 39M accounts in security “protest”
#3Re: GhostShell hacker leaks 39M accounts in security “protest”
#4Re: GhostShell hacker leaks 39M accounts in security “protest”
#5Many many years ago when I was younger and playing with buffer overflows and learning shellcode, I'm not saying that I'm proud of this either, but in my journeys I had breached a couple of online retailers, had full access to their databases and internal networks.. of course I alerted them via anonymous e-mails, but what always struck me was the amount of times that I encountered files from 'hackers' just saying that they were here or what have you. Many of them just placing files because they couldn't transverse the NAT, and others who had uploaded ftp scripts but had typos in them so the scripts didn't get deleted like they had planned. Evidence of crimes and theft laying all over the internal network for months or years, and nobody finding it.
At some point it's hard not to side with people like ghostshell, because when you're supposed to be responsible for important information, but have seemingly no interest in protecting it, at some point the system is bound to fall apart.
I'm reminded of something I read posted by l0pht, way back when, and they just said how much better they were than everyone else because they had jobs at burger king and were dedicated to spending all of their time penetrating networks while their opponents were a bunch of overpaid nobodies who hated their jobs and overall really didn't care, and that they would always win.
I think that still holds true today.
Re: GhostShell hacker leaks 39M accounts in security “protest”
#6The most interesting thing to me was the evidence posted that other hackers had already penetrated these systems, which I guess goes without saying when you have little to no security in place. Many many years ago when I was younger and playing with buffer overflows and learning shellcode, I'm not saying that I'm proud of this either, but in my journeys I had breached a couple of online retailers, had full access to…
Every sysadmin I've met cares a lot. But they get to rely on products from disparate vendors that are full of zero day exploits and helpful users who are easily socially engineered.
Re: GhostShell hacker leaks 39M accounts in security “protest”
#7Re: GhostShell hacker leaks 39M accounts in security “protest”
#8The most interesting thing to me was the evidence posted that other hackers had already penetrated these systems, which I guess goes without saying when you have little to no security in place. Many many years ago when I was younger and playing with buffer overflows and learning shellcode, I'm not saying that I'm proud of this either, but in my journeys I had breached a couple of online retailers, had full access to…
>I think that still holds true today.
This'll sound a little harsh, but if you have to work at burger king to fund your living then you aren't a very good hacker.
There's no lack of opportunities for those with talent.
Re: GhostShell hacker leaks 39M accounts in security “protest”
#9The most interesting thing to me was the evidence posted that other hackers had already penetrated these systems, which I guess goes without saying when you have little to no security in place. Many many years ago when I was younger and playing with buffer overflows and learning shellcode, I'm not saying that I'm proud of this either, but in my journeys I had breached a couple of online retailers, had full access to…
while their opponents were a bunch of overpaid nobodies who hated their jobs and overall really didn't care Every sysadmin I've met cares a lot. But they get to rely on products from disparate vendors that are full of zero day exploits and helpful users who are easily socially engineered.