[UFO Chicago] [lembark@wrkhors.com: Re: [LUNI] Schneier's Awful Idea]

Peter A. Peterson II pedro@tastytronic.net
Thu, 15 Aug 2002 09:30:23 -0500


Interesting concept. 

----- Forwarded message from Steven Lembark <lembark@wrkhors.com> -----

From: Steven Lembark <lembark@wrkhors.com>
To: luni@luni.org
Subject: Re: [LUNI] Schneier's Awful Idea
Reply-To: luni@luni.org
Date: Thu, 15 Aug 2002 00:29:00 -0500

-- scott thomason <scott@thomasons.org>

>Sadly, the link is broken. Can you give us a synopsis?

Security is a process, which can be badly broken by
people's habits. Example: password security systems are
only secure if the passwords are not freely given out.

so...

Lets say you want to break into a banking system. The
one thing that network monitoring software has shown us
over the past decade is that managers LOVE to visit porno
sites. Being human, they also re-use userid's and passwords.

hmmm...

(1) Open a porno site using stolen material, don't charge
   for it: just require a username and password.

(2) Trace the IP's.

(3) Use the ID/Pass combo's people grabbed the porn with
   to crack their systems.

Scary thing is that it probably would work.

--
Steven Lembark                               2930 W. Palmer
Workhorse Computing                       Chicago, IL 60647
                                           +1 800 762 1582
______________________________________________________________________
Linux Users Of Northern Illinois - Technical Discussion 
luni@luni.org
http://luni.org/mailman/listinfo/luni

----- End forwarded message -----

-- 
Peter A. Peterson II, technician and musician.
---=[ http://tastytronic.net/~pedro/ ]=---