reports a malicious user to learn where administrative files are stored on a Web server and view and read the files. “It’s not for us to assess the seriousness of this problem, because we take all security risks seriously”, said a Microsoft spokesperson. “The important thing now is that the patch is out and that it fixes the problem.” He pointed out that many users have the Index Server active without realizing it. “Of course, from a security perspective, you shouldn’t offer any services you don’t use. We want to make sure our customers are educated about this”, the spokesperson said.
“The first vulnerability could allow a malicious user to view, but not change, add or delete files on a Web server, and the second could reveal where Web directories are physically located on the server”
He added that customers should be aware of which services they have active, and how to disable what they don’t need. He also noted that Microsoft has given Windows 2000 tighter defaults and made it much easier to configure. The patch for the problem, and background information on the vulnerability, are available on the Microsoft Web site, www.microsoft.com/technet/ security/bulletin/ms00-006.asp. Windows 2000 was released to manufacturers on December 15 as well as to hardware makers and some other key partners. Developers and large customers received the code in early-to-mid January.
did was “a gross invasion of privacy” but not stealing. “I was an accomplished computer trespasser. I don’t consider myself a thief ”, he said. Mitnick also said he did what he did for fun and not profit. “I saw myself as an John Sterlicchi electronic joy rider. I was like James Bond The US’s most famous criminal hacker, Kevin Mitnick, has been freed from behind the computer. I was just having a prison and has explained on US television why he committed the crimes. blast.” Mitnick said he did not sell or trade the Mitnick, who hacked networks at several technology he may own for the next three information he stole...although he could high-tech companies and also stole credit years is a landline telephone. have become rich. “It would be quite easy He is also barred from employment card numbers and software, was to become a millionaire. I could have sentenced to 46 months in prison last with companies that have computers or simply accessed the computers of law computer access on its premises. August. firms that do acquisitions and mergers Days after his release Mitnick appeared But because of the time Mitnick has and traded on the information. I could already spent in prison, he was eligible for on the US’s most popular investigation have transferred funds.” release in late January. TV show, 60 Minutes, to explain why he Mitnick explained how easy it was to Mitnick pleaded guilty earlier in 1999 committed his crimes. He is already the breach security. At Novell, he said, he was to seven felonies, and admitted to subject of four books and a film is said to able to breach the company’s security hacking computers at organizations be in the making. computer firewall in “a few minutes”. including Motorola, Novell and Sun Microsystems as well as illegally “He is not allowed to use “He said he was the victim downloading software from some of the computer hardware and of over-zealous prosecutors victim companies. software as well as any Prior to the sentencing in Federal Court and media hype” the Los Angeles District Attorney form of wireless dropped California State charges against to steal the source codes communication. The only forAttwoMotorola, Mitnick meaning that once his jail term is of the most advanced cell phones, over he would face no more charges. technology he may own for he merely conned someone over the He is not totally free though as there are the next three years is a phone into E-mailing the codes to him. many restrictions imposed by the trial Before his television appearance and landline telephone” judge. outside the prison after his release, He is not allowed to use computer Mitnick showed an equal lack of remorse. hardware and software as well as any form He did not consider himself a thief, he He said he was the victim of over-zealous of wireless communication. The only told the interviewer. He believed what he prosecutors and media hype.
Mitnick out of prison tries to justify actions
5