Monday, December 15, 2014

Breaking into five minutes – Aftenbladet.no

The other day discovered 29-year-old Chris Andre Solberg Dale how intruders could befall the world’s largest blog platform WordPress. Other days goes to break into the innermost of Norwegian companies.

Dale is the hobby long since become a paid activity. From the mundane office at Nesttun has 29-year-old from Askøy that job to penetrate corporate computer systems. The aim is to check that they are not too vulnerable out on the vast web, typing bt.no.

Dales task is to find all attack opportunities that are forgotten by those who develop computer programs and websites.

– It’s like a game. It is something new for every customer. You need to find vulnerabilities you need to break into. It takes anywhere from five minutes to a few days, he said.



Two day VM

Today await what may be called the World Championships in hacking, at least for the professional and the so-called ethical hackers. Those who do not break in order to harm or steal, but rather works to prevent burglary.

Dale has qualified for the championship through several tournaments in Europe. The championship has 53 participants and runs over two days in Washington DC. And although it is not wall to wall coverage on Norwegian network television, giving participation great honor in the environment.

– I’m a little humble. Those attending are extremely clever. They work with this around the clock, seven days a week. But I hope for a place in the top ten, says Dale.

impingement range from simple things everyone can do to the more technologically demanding. A simple example: If you search a phone book online, your search will appear in the URL. In the address, you can enter a command to the database query being made.

About the developers have not taken this into account, you get easy access to manipulate, steal or delete.



To crack Dan Brown code

Other times it’s more innocent. As he opened all the doors in Norwegian advent calendar last year on day 1.

– I can tell a little secret. On the home of Dan Brown can analyze up a secret code. But I had access to my way and came to a secret video greeting from Brown. It was only shown 20 times before, says Dale.

His own hack-past he rather vague on. He says something about that “when you grow up, it comes to a portion ethics and morality eventually.” As 13-year-old, he tried and a fellow first time to hack, after they learned of a vulnerability. Instead they got up warning screen that the experiment was logged.

– My buddy went out power cable and panicked. It took several years before I started again, says Dale.

ALSO READ:

Now “elite hackers” taken

Threatened Review

But there are also legal ways for those who want to learn computer intrusion: Large sites like Facebook, have their own areas where they let people try to break into . They are simply happy for anyone who can help them.

Second, as a supplier in Bergen, do not take tips and hints as well. On a local Bergen page logged Dale in as an administrator by typing some random characters as username. He tipped the owner about the error.

– They were super happy that I notified. But then I learned that supplier their threatened to police in me if I did it again.

Generally Dale fairly shocked at how poor security that is out there.

– I know from experience that it is extremely much bad. Many companies are already compromised without knowing it, he said.

In unrecorded survey Confederation security organization, responded four percent of the companies that they had had a data breach in 2013. breakins may have been going on for months, sometimes years, without that business is aware of it.

Facts: World Championships in hacking

  • Hacking or hacking is a collective term for various types of penetration into computer systems.
  • There are various categories hackers, from those who deliberately break into for fun or profit, so-called ethical hackers who enters to find and notify vulnerabilities.
  • NetWare Tournament of Champions is the largest of hacker tournaments and takes place in Washington DC, USA. Participants are winners of qualifying tournaments and other similar competitions.

ALSO READ:

Hackers attack Playstation Store

Many companies do not know where the data is stored

LikeTweet

No comments:

Post a Comment