With Gary McKinnon fighting to avoid extradition to the states for cracking/hacking the Pentagon and NASA (IIRC) then you would have thought that the seriousness of this type of offense would be pretty high up in their consciousnesses!
He made no changes at all (allegedly) and faces life in jail.
How did the BBC know that their bots wouldn't get installed on a PC in a bank or a military establishemnt or a hospital? What if the desktop screen change crashed a PC running someones life support? (it was targetted at MS Windows so this might be possible! ;0) What about the hours spent tracing the perpetrator and undoing the changes. If it took 1 minute to undo each change thats still 15 days of technician time working flat out or 45 working days. If 10% of users placed a call out for tech support at a cost of £50 for the call out and fix that's £110k of additional call outs placed!
Somewhere deep inside me I really want to see what would happen if one of the PCs infected was a military PC and that the code they used had a bug in it that opened up a back door for the original writer of the code to gain access. I'm presuming here that they used a script kiddie kit rather than writing their own from scratch? Why create your own bot net when you can get a script kiddie to do the distribution and take the rap for it and then you just exploit a bug you put in the script to give you access to the existing infected machines....
I'm not really going to defend the BBC's action but given the seriousness of the problems caused by botnets, do you not think that news organisations should be making massive efforts to educate the general public about the risks to which they are exposed?
Running their own botnet might not be the best idea but setting up a simulation in a studio is pointless - people would look at it and say "that's not real" (because it obviously wouldn't be). This is very real and it might just make a few people think "How do I make my computer secure"
Been thinking about this off and on most of the day and I've come to one conclusion.
Why is it that it's this flipping simple to access a botnet and then notify the owners of the machines that their machine is compromised and NOBODY HAS DONE IT?
Why is it sensible to leave all these compromised machines out there and not do a damned thing about it when they will almost certainly be used for illegal acts?
It's like saying we know you have a gun and that someone is going to use it to shoot someone but we can't take it from. Even AFTER they've shot someone!
If this was indeed the case, it means that licence fee money has now been used to directly fund organised crime.
I'm also glad someone brought gary mckinnon up, as far as i'm aware mckinnon didn't use a network of 22,000 machines to send spam, or go to the lengths the bbc went to in trawling of internet chatrooms to pick up a low-level botnet - didn't mckinnon use a humble dial-up modem ? ....and yet mckinnon faces extradition to the US and a possible jail term.but surely there are ways of raising awareness of threats without breaking the law?
Questions also need to be raised regarding whether any monies were paid to secure this botnet
If our authorities can't protect our own citizens like Mr. Mckinnon from foreign states, then the least they can do is investigate and preferably throw the book at the bbc for being so premeditated in these actions. Otherwise it's double standards surely ?
isn't that funding illegal activity ? or is it a hmrc/liechtenstein type thing ? the hmrc are/were in the dark about tax activities in the tax haven principality, so when the chances of purchasing STOLEN banks details arise they jump at the chance so as to achieve some 'greater good' and gain better insight inspite of effectively funding a criminal act. that isn't common sense vs legal thing, that's doing something because you can. Institutions like the hmrc and the bbc know they can get away with it citing the reasons mentioned, an individual or a group of committed individuals seeking to achieve similar results might not find such leniency from the long arm of the law. it's not common sense vs legal system, it's a case of two legal systems.....one for the authorities [including the bbc apparently] and it appears another one for the average joe or jane.
Clamping down on this type of botnet activity requires international coordination and is probably not at all simple becuase doubtless botnets are springing up all the time. i'm only hazarding a guess as to why, the programme will doubtless tell us a solution, or maybe not.
To borrow a line from the Not the Nine O' Clock News' Points of View spoof, "The BBC is a load of crap!".
I think I'd be pretty if the BBC changed my wallpaper.
Can you be charged for the same crime 22,000 times? They'll get away with it anyway.
Three years for throwing a shoe.
<pray>infected iraqi gov PC</pray>
There are currently 1 users browsing this thread. (0 members and 1 guests)