ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Jobs
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


Industry watch Toolkit

Hacker helps Excite@Home toughen defences

Robert Lemos, ZDNet News ZDNet US

Published: 30 May 2001 10:48 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Not all hackers are bad -- just ask Excite@Home. The company shored up its online defences after a hacker pointed out a vulnerability in April that allowed access to the company's internal network and exposed nearly 3 million support records to the public.

The company praised the hacker -- known by the alias "Adrien Lamo" -- for coming forward after he poked around their network.

Lamo contacted the company nearly two months ago after he discovered a server that could be used by would-be attackers to get into portions of the Excite@Home corporate network. Among the accessible data was a customer support database of users, their machine configurations and their addresses, Excite@Home spokeswoman Londonne Corder said.

However, no credit card information was in the database, she stressed, and because of Lamo's aid, no records were accessed by others. Lamo first found the network vulnerability in March, she said.

The details of the breach were first reported by security site SecurityFocus.com, which had been contacted by Lamo.

Lamo is "someone who tries to uncover security holes with good intentions -- to show us where we had some security holes, so those could be fixed", Corder said. While not a first, a collaboration like Excite@Home's cooperation with a hacker to secure its network is rare.

Despite the open source movement underscoring the historic definition of hackers as curious -- if unconventional -- researchers, companies have been frequently leery of associating with anyone who considers themselves one.

Yet, the Excite@Home network seems a bit more secure today because of the cooperation.

"After meeting with Lamo, we took steps to further secure the corporate network by installing firewalls, restricting access to the network, implementing programs to prevent denial-of-service attacks, and adding hardware and software designed to detect and prevent security breaches," Corder said.

Is your PC safe? Find out in ZDNet UK's Viruses and Hacking News Section.

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Security forum.

Let the editors know what you think in the Mailroom. And read other letters.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
41 out of 105 people found this useful



Company/Topic Alerts

Create a new alert from the list below:








Discussions

thinkfeeldo thinkfeeldo

Chromatica Maycontrolus

Monday 8 September 2008, 6:16 AM

4 comments
roger andre roger andre

BBC must switch on to PC switch off

Sunday 7 September 2008, 11:50 PM

3 comments
roger andre roger andre

Chromatica Maycontrolus

Sunday 7 September 2008, 4:50 PM

4 comments

Featured Talkback

When all is said, if Microsoft produce the best product people will buy it and thats a good thing. If people have to buy their product because no one else can produce an alternative, only because interoperability protocols are kept secret, then thats a bad thing.

By: pround

Read full story:
EU court crushes Microsoft's antitrust appeal