ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

£35,000 hacking challenge cracked

Will Knight ZDNet.co.uk

Published: 23 Apr 2001 14:44 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A team of computer hackers has captured £35,000 for hacking into a computer system just twenty-four hours after the competition began. The hack is likely to be a major embarrassment for the company behind the high-profile hacking comptetion, despite its assertion that the break in has highlighted a major new vulnerability in the Solaris operating system running on Intel x86 microprocessors.

Argus Systems organised the competition -- to break into a Web server locked down using its security product called PitBull -- to promote its products and to coincide with the start of Infosec, the UK's premier computer security event. Hackers were invited to circumvent PitBull, which automatically secures known vulnerabilities and restricts activity at the operating system level, and deface two functional -- but fictitious -- company Web sites.

The hacking group -- Last Stage of Delirium (LSD) -- broke into the target server on Saturday, just a day after the competition began, and informed Argus Systems. The target server was shut down as the company immediately launched an investigation.

However, Randy Sandone, president and chief executive of Argus Systems, denied that the decision to hold the hacker challenge was a mistake. "We continue to believe that these hacking contests are providing a public service to the industry," said Sandone, adding that the challenge has revealed an important operating system vulnerability.

"In this case, with the help of LSD, we've exposed a potentially devastating vulnerability that may exist in millions of computer systems around the world."

Sandone stressed that customers using PitBull need not acquire a patch to secure their servers, as the vulnerability lies with the Solaris operating system. Details of the vulnerability will be published once a fix is created.

Others believe the stunt backfired and is an embarrassment for Argus Systems Group, as well for as security consultant firm Integralis and hardware vendor Fujitsu Siemens, which helped organise the stunt and have coordinated three similar competitions in the US and Germany without suffering setbacks.

Gunter Ollman, principal consultant for computer security company Internet Security Systems, says that this may just go to show that there's no such thing as 100 percent security. "There's always going to be a potential risk there," he said. "The skills of people of the other side of the fence are getting better all the time."

The challenge was organised to mark the start of Infosec, which takes place in London this week.

Take me to Hackers

Take me to ZDNet's Net Crime Special

Have your say instantly, and see what others have said. Click on the TalkBack button and go to the Enterprise forum

Let the editors know what you think in the Mailroom. And read what others have said.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
44 out of 71 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:











Related Jobs

Oracle Database Developer, Oracle 10g, PL/SQL, Finance, London, 70k

Essential skills needed: Strong Oracle RDBMS in a developer role, some DBA exposure, Oracle 10g, PL/SQL development/coding, some Java, SQL, Solaris. ...

S&P (Security) IT Specialist

ME/2000/NT/XP/2003 & UNIX/Linux flavours Solaris, AIX etc - Have knowledge of firewalls, switches, routers - Have knowledge of networking - Vlan's, ...

Fantastic Junior Oracle DBA opportunity SW London 30k

Oracle DBA in 12 months One of my key Blue Chip Commercial clients based in SW London are currently recruiting for a Oracle DBA- Linux/ Unix/ Sun ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

2 comments