Showing posts with label Hacking. Show all posts
Showing posts with label Hacking. Show all posts

Thursday, January 29, 2009

Hacker vs Cracker

The New Hacker's Dictionary defines Hacker as:

  1. "A person who enjoys exploring the details of programmable systems and how to stretch their capabilities, as opposed to most users, who prefer to learn only the minimum necessary. RFC1392, the Internet Users' Glossary, usefully amplifies this as: A person who delights in having an intimate understanding of the internal workings of a system, computers and computer networks in particular.
  2. One who programs enthusiastically (even obsessively) or who enjoys programming rather than just theorizing about programming.
  3. One who enjoys the intellectual challenge of creatively overcoming or circumventing limitations."


The term Cracker was introduced later in defense against journalistic misuse of Hacker, to differentiate between ethical hackers and the malicious hackers who subvert computer security for vandalism, personal gain, or other types of crime.

As the Jargon File states, "While it is expected that any real hacker will have done some playful cracking and knows many of the basic techniques, anyone past larval stage is expected to have outgrown the desire to do so except for immediate, benign, practical reasons (for example, if it's necessary to get around some security in order to get some work done)."


"Hacking is probably a natural part of exploring computers, no more malicious than figuring out how to put graphics in the border of the C64, disassembling executables, running programs through hex editors or trying to crack copy-restriction schemes on early software. With a world as vast and seemingly limitless as the Net, (and especially in the days before everyone was on it, when commercialism was strictly forbidden) reaching out to the far tentacles of the matrix was an exciting way to learn what was out there, and that included digging around through various computers. What's here? It's a host. What is it? Let's get in and see. Where does it come from? What does it do? Whose is it? Why is it here? What's on it? These sorts of explorations are a large part of the excitement of youth... Indeed, computer crime, as it is often called, is one of the few ways to keep entertained in the suburbs...

Too many people are quick to see a few 37337 h4x0r5 d3f4c3 4 w3bp4g3 and jump to the conclusion that everyone out there interested in network security is a little kid with a script who wants to write cryptic messages about owning so-and-so and playing games on irc. Beneath this superficial layer is a group of extremely dedicated advocates of freedom, truth, fair treatment, free information, sharing, exploration, curiosity, and knowledge, a true counter-culture which has remained steadfast as a vanguard against injustices perpetrated by the government, by corporations, by authoritarians. Yes, sometimes people think they go too far and probably suspect they're characters in a post-apolocyptic sci-fi movie. Still, the diversity among these people who get written off as "crackers" is such that it is unfair to characterize the group as a whole..." (Jason Kroll, Linux Journal editor)


"It all boils down to what kind of motivations and opportunities the hacker has. If the hacker is unethical, many times his motivations will be based upon greed, hate, bias, and a destructive mindset. If the hacker is ethical, then he may be motivated by an intellectual challenge, innovative ingenuity, and the like. The opportunities for hackers to hack depends heavily upon their own skills and abilities, as well as the targeted system's own deficiencies. The line between ethical and unethical hacking is a thin one, one which many do not dare to walk on." (Rich Christie)

Hacking Groups

Legion of Doom (LOD)

H/P group, founded by Lex Luthor. The group later split into LOD (phreaking) and LOD/LOH (hacking). Involved in the Great Hacker War (1990-1991), an online conflict between MOD and the group Legion of Doom (LOD).

Members of LOD were: Lex Luthor, Erik Bloodaxe, Bill From RNOC, Lord Digital, The Mentor, Mark Tabas, Agrajag The Prolonged, King Blotto, Phiber Optik (joined MOD), The Urvile, Doc Holiday, Dead Lord, Doctor Who, Paul Muad'Dib, Prime Suspect, Frank Drake, Riot, The Leftist, Thomas Covenant, The Prophet, Monster X, The Marauder, Skinny Puppy, Professor Falken, Control C/Phase Jitter, Unknown Soldier, Phantom Phreaker, Sharp Razor, Phucked Agent 04, X-man, Randy Smith, Steve Dahl, The Warlock, Terminal Man, Silver Spy, The Videosmith, Malefactor, Blue Archer, The Dragyn, Gary Seven, Carrier Culprit, Kerrang Khan, The m0nit0r, Master of Impact, Doom Prophet, Sundry.

Masters Of Deception (MOD)

H/P group, founded by Acid Phreak, Scorpion and HAC. MOD controlled all the major telephone RBOC's and X.25 networks as well as controlling large parts of the backbone of the rapidly emerging Internet. Involved in the Great Hacker War (1990-1991), an online conflict between MOD and the group Legion of Doom (LOD).

The original members of MOD were: Phiber Optik, Acid Phreak, Scorpion, HAC, Corrupt/Netw1z, Outlaw. Other members were: Wing, Supernigger, Nynex Phreak, Billy The Kid, Crazy Eddie, The Plague, ZOD, Neutrino, Seeker, Red Knight and Lord Micro.

Thursday, January 22, 2009

What is Hacking?

What is your definition of hacking? Most people think of the news stories that relate to big companies having embarrassing problems as their data is compromised. But in truth, hacking goes a lot further than this.

It doesn't always have to be someone you don't know who hacks into your systems and causes problems for your business. It could equally be someone who works for you that doesn't have your best interests at heart. This is because the basic meaning of hacking is when someone accesses some or all of your computer systems without permission. And it doesn't just happen over the internet.

Quite often, many people don't see how widespread computer hacking computer hacking that they are only in danger from internet based attacks means they may not be covered for all risks. Even those companies that do all they can to prevent hacking which occurs online may have unwittingly turned a blind eye to other dangers.

This is why an understanding of what hacking is and what it involves can help you to protect your own business more fully. But what do you do if you don't know all the ins and outs of the threats posed?

The easiest solution is to rely on an expert to make sure every potential hole is plugged, and no one can break into your systems. Network penetration testing is one of the best ways to see how good your computer network really is. If you do have vulnerabilities it's best to find out via someone who is honest and is looking for them to benefit you. If you assume everything is okay and it isn't, you could be in for a nasty shock at some point in the future.

It is probably because people limit their definition of hacking that some businesses are more in danger than they realise. Everyone likes to think that all their employees are working honestly and for the company's good, but it doesn't always pan out that way.

Supposing an employee was given notice to leave but they had until the end of the day to clear their desk. They could potentially do a lot of damage to your computer system before they left, if the mood took them that way. Even though you could have them arrested for their actions, the damage would still be done and it would take time to rectify.

An expert in the field of ethical hacking would be able to highlight any potential problems and solve them before anyone else had a chance to exploit them. And that is certainly a service that is worth paying for.

Don't make the mistake of thinking this should only be done once though. Hackers are constantly finding new ways into previously secure systems. If you employ a company to see how up to date your security measures really are, make sure you do it on a regular basis. If you don't, you still run the risk of being caught out.