Let's not forget Mr. Bob Sullivan of MSNBC.com.  This media Journalist also self
admitted breaking into some businesses MS SQL Servers and called them web
servers and has pounded the message to uninformed internet users that they need
to stop using "small websites" because they are the root of all problems we have
on the internet.

I received several letters from VP's and above from 7 of the companies after I
wrote them demanding to know why they did not press charges against Bob Sullivan
for breaking in - yet the FBI readily goes after the so called 'hackers'.  Is
Bob Sullivan nothing less than a hacker himself, using the breakins to make
money for himself and MSNBC?  It looks so sad to see his many stories online  -
he doesn't have a clue, yet he is spreading fallacies - ones he says he learned
from these Gray Hats.

He in my opinion is nothing less than a National Enquirer Class Journalist.  I
can just see him looking up trying to be the first to see those little green men
from Mars - so he can write about them.

Just my 2 cents worth.....




jeff andrews <[EMAIL PROTECTED]> on 02/17/2000 02:17:14 AM

Please respond to [EMAIL PROTECTED]

To:   [EMAIL PROTECTED]
cc:    (bcc: Phillip Laird/HOU/CCC)
Subject:  Glorifying gray hats



With much of the news surrounding L0pht with hacker, Mudge aka Peter Zastko,
including the White House security summit, it seems to praise their gray hat
model.

?L0pht members describe themselves as "gray hats," on the edge between good and
evil hackers. Besides selling security software, they broke into corporate
systems and alerted the firms to weaknesses.?

http://www.usatoday.com/life/cyber/tech/cth071.htm

?More damning is that L0pht has also gone on record as saying that "governments
and multinational corporations are detrimental to the personal liberties on the
Internet." On the other hand, L0pht's new company, called @Stake, is a
specialized professional services company that will provide a full range of
security solutions for the e-commerce operations of global clients.?

http://www.zdnet.com/enterprise/stories/security/news/0,7922,2420340,00.html

?Back Orifice is a windows trojan developed by the cDc ...The correlation? The
Deth Vegetable, as well as several other Cult Of The Dead Cow Members (including
Mudge and DilDog) are also members of L0pht Heavy Industries (according to
membership lists posted on both cultdeadcow.com and l0pht.com).?

http://www.antionline.com/cgi-bin/News?type=antionline&date=05-03-1999&story=l0pht.news


1.   Is there an ethical issue with L0pht members developing Back Orifice 2000,
the infamous backdoor, and then profit from a solution that protects against it?

2.   With L0pht?s known views on government and corporations, does it make sense
for them to act as main counsel for the White House?

3.   Is there an issue with gray hat hackers that break into systems that are
then employed as the protectors of those systems?

4.   Are gray hats preferred for securing a firewall than a good security
consultant?

5.   Does elevating these gray hat hackers as role models encourage young kids
to break the law in an effort to become like L0pht?

6.   Should the press and media be glorifying the gray hat model?

With L0pht, developing exploit tools, raising $10 million from venture
capitalist for their new start-up company, should Mixter, the developer of
distributed denial of service (DDOS) exploit tools, go raise money as well?  If
they can get Coolio, Mafiaboy, and Mixter together, they might want to borrow
Lopht?s business plan.

Thanks,

-- JA


Jeff Andrews,
Senior Security Engineer


_____________________________________________________________
Email Powered by Everyone.net
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

This correspondence is for the named person's use only.  It may contain
confidential or legally privileged information or both.  No confidentiality or
privilege is waived or lost by any mistransmission.  If you receive this
correspondence in error, please immediately delete it from your system and
notify the sender.  You must not disclose, copy or relay any part of this
correspondence if you are not the intended recipient.   Any opinions expressed
in this message are those of the individual sender,  except where the sender
expressly, and with authority, states them to be the opinions of Criterion
Catalyst Company L.P. or one of its subsidiaries.


   _____________________________________________________

   Phillip Laird
   Criterion Catalyst Company LP
   Information Systems
   Network Services
   Office: 281-874-2887 Fax: 281-874-2641
   "Home is where you hang your @"



-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to