Profile

unixronin: Galen the technomage, from Babylon 5: Crusade (Default)
Unixronin

December 2012

S M T W T F S
      1
2345678
9101112131415
16171819202122
23242526272829
3031     

Most Popular Tags

Expand Cut Tags

No cut tags
Wednesday, July 16th, 2008 11:01 pm (UTC)
They have access to the hardware, but they can't reset the passwords. Yeah, right. Maybe that's why he was making $150K/year as a government employee.
Wednesday, July 16th, 2008 11:17 pm (UTC)
I wondered about that part myself. Probably part of the same reason he got away with it in the first place.
Thursday, July 17th, 2008 12:03 am (UTC)
It's certainly possible to build a system that does lockouts on the common attacks (think encrypted disk w/ boot password for decrypt). Furthermore, some network hardware only has a full-scale reset switch, no other way around the password system - either you reset and lose the config, or you find the password. This is useful for protecting the gear against a lot of attacks where you want the data in the device (think IPSec PSKs and SSL keys). The only attacks to recover the data in that case come down to desoldering the flash/nvram and hoping you don't wipe it accidently with ESD in the process.

The other articles note that the system is still operational, they just don't have admin access to it anymore - and downtime to hack it would probably be expensive than most hackers. I'd do it for $500/hr.
Wednesday, July 16th, 2008 11:20 pm (UTC)
further reading of the article talked about spending millions of dollars to restore the administrators access.

Little do they know that all it would really take is a hacker, a case of hot pockets, and several seasons of Xena, and they'd have them all fixed up.
Wednesday, July 16th, 2008 11:21 pm (UTC)
Well...130.

And, for a senior admin, that's not a whole hell of a lot around here.
Wednesday, July 16th, 2008 11:24 pm (UTC)
Plus some serious bonuses.
Wednesday, July 16th, 2008 11:30 pm (UTC)
actually, from what I know, that's why (esp local to Bay Area) gov make such good salaries. No real bonus structure. No stock options. Good(ish) benefits.

In order to be competitive, they HAVE to lay down big bucks.
Wednesday, July 16th, 2008 11:36 pm (UTC)
He evidently didn't think so.

'Course, one of my reasons for leaving one former employer was, shall we say, compensation not in accordance with responsibilities of the position. (Further, deponent saith not.)
Thursday, July 17th, 2008 01:32 am (UTC)
Lovely. Oh, just lovely. Want to bet he's been selling information to criminals on the side, too?
Thursday, July 17th, 2008 01:43 am (UTC)
I believe the article did mention that speculation, and that he may even have been selling access to the systems.