02-25-2005, 10:02 PM
|
Executive Editor, Android Thoughts
Join Date: Aug 2006
Posts: 3,233
|
|
T-Mobile Terrorist (?) Strikes Again
Apparently not content to disrupt the Hollywood actor types only, the so-called T-Mobile Terrorist (I added the ? because as we all know, a true nickname must be earned - he appears to have simply selected it himself... ) has released a 3-minute video in which Limp Bizkit's Fred Durst is supposedly shown engaging in a somewhat graphic sexual act. The point we find interesting is the quote from the Drudge piece which states the following attributed to a website hosting the hack:
"The previous information was obtained using social engineering tactics."
Social Engineering Tactics :? Sounds like this hacker might not be all that tech savvy, but may have some secret psychological weapons to lob at unsuspecting celebrities. Now don't everyone start looking at me.... :devilboy:
__________________
Dr. Jon Westfall, MCSE, MS-MVP
Executive Editor - Android Thoughts
News Editor - Windows Phone Thoughts
|
|
|
|
|
02-25-2005, 10:20 PM
|
Thoughts Media Review Team
Join Date: Aug 2006
Posts: 749
|
|
Re: Social Engineering Tactics --
Actually, I noted from the Engadget site, that they had figured out it that the 'hacking' of Paris Hilton's Sidekick may have been no more sophisticated than figuring out that the answer to the question 'What's your favourite pet's name?' on T-mobile's site, to allow access to read/change the password -- was the already well known 'Tinkerbelle'.
Thus, the 'hacker' was able to go in, change the password to whatever he/she wanted, and achieve full access to all of Paris' information.
(Don't get me started on why she felt the need to have someone take semi-nude pictures of her on her cameraphone.) I have my suspicions that this is a rather elaborately staged publicity stunt.
Anyway, this guy may have used the same simple technique to get at mr. durst's information as well.
__________________
/drt
|
|
|
|
|
02-25-2005, 10:45 PM
|
Pontificator
Join Date: Mar 2002
Posts: 1,329
|
|
Re: T-Mobile Terrorist (?) Strikes Again
Quote:
Originally Posted by Jon Westfall
Social Engineering Tactics :? Sounds like this hacker might not be all that tech savvy, but may have some secret psychological weapons to lob at unsuspecting celebrities.
|
Hacking/Cracking is 70% Social Engineering 30% 1337 2ki11z and 120% caffeine. I could be off on those figures though. It might be 180% caffeine. :wink:
__________________
PDA History: Palm Pilot 5000 -> Apple Newton 2100 -> Casio E-11 -> iPaq 3650 (64MB Upgrade) -> iPaq 3700 -> Casio EM-500 -> HP Jornada 568 -> HP iPaq hx4705 www.spreadfirefox.com
|
|
|
|
|
02-25-2005, 11:20 PM
|
Ponderer
Join Date: Dec 2004
Posts: 62
|
|
Celebrities disgust me.
|
|
|
|
|
02-26-2005, 01:52 AM
|
Ponderer
Join Date: May 2004
Posts: 63
|
|
The "hacker" got it by screwing with the form POST on a page on the T-Mobile site. There is a page where you can request to have your password sent to your phone. He just screwed with it so the password went to his phone instead. Bingo!
|
|
|
|
|
02-26-2005, 02:57 AM
|
Sage
Join Date: Aug 2004
Posts: 718
|
|
Quote:
Originally Posted by njl2016
Celebrities disgust me.
|
No more than some "regular" people
|
|
|
|
|
02-26-2005, 04:47 AM
|
Thinker
Join Date: Oct 2004
Posts: 318
|
|
1 - And?
2 - Setup?
3 - Who cares?
4 - But the girls fit!
5 - So whats Freds favorite pet?
|
|
|
|
|
02-26-2005, 06:24 PM
|
Intellectual
Join Date: Jul 2002
Posts: 116
|
|
Social Engineering is one of the most important toolz to a hacker, at least a talented hacker...lets just hope they are using there skills for white hat purposes...like exposing celebs :wink:
Good book that talks about many aspects of hacking including ethics: http://www.amazon.com/exec/obidos/tg...ce&s=books (non-affiliate)
or search ISBN: 1559501065
--Bill
|
|
|
|
|
02-27-2005, 04:42 PM
|
Sage
Join Date: Mar 2004
Posts: 734
|
|
Yep, it's amazing what you can 'hack' without any tools whatsoever. Take.. something like hotmail for instance. Say I want to read my colleagues mail. I already know their address because they gave it to me. Or I could just ask someone. Now, i don't have the password, but I know you fairly well. You talked about your pet, didn't you? We celebrated your birthday last week... I know your mother's name... I know a lot more about you then you think.
If questions like these are your last line of defense, you are sitting on a ticking time bomb. I make sure my secret question or password is something that I and only I could possibly know. Something so strange it would never come up in casual conversation.
|
|
|
|
|
02-28-2005, 03:15 PM
|
Pupil
Join Date: Oct 2003
Posts: 21
|
|
"unsuspecting celbrities"? Sounds like Ashton is up to it again. Oh wait, he got punk'd on this too.
|
|
|
|
|
|
|
|