[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [cobalt-users] Cobalt to provide compensation for server hack?
- Subject: RE: [cobalt-users] Cobalt to provide compensation for server hack?
- From: "GPS" <gps@xxxxxxxxxxxxxx>
- Date: Sun Feb 18 13:09:01 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
+....and kiss your warranty goodbye. Unfortunately, Cobalt can't
+have it both ways - the warranty has to cover the software,
+because it's void if you change any of these things as supplied,
+or add anything other than their sanctioned updates. What you are
+saying here, is in fact the EXACT opposite, of everything Cobalt
+insists you do. I'm not lawyer, but I'm sure there's very likely
+a legal argument they haven't showed some kind of duty of care.
+(ie: making the box secure voids the warranty because it's not
+sufficiently secure when they hand it over.)
+
+Not that I think everyone should run out and sue Cobalt. What I'd
+rather see is the hackers/crackers (and lets add the spammers) or
+whatever they like to call themselves severely penalised. Too
+often when it comes to internet problems, everyone can't wait to
+blame the victims - your fault it was in insecure box, your fault
+you were running the wrong version of sendmail/Bind/Apache/FTP,
+etc. If your neighbour is burgled, don't forget to tell them it
+was their fault because their alarm system and locks obviously
+weren't good enough.
+
+It's about time the finger was squarely pointed where it belongs,
+with the people compromising these systems.
VERY well put Donna! <applause>
Here's some other points to consider.
A lot of people bought into the Cobalt Appliance line because
they are NOT or do NOT employ a full-time Linux System Administrator.
Rather they do marketing and sales and generally run a business.
Cobalt told us you didn't NEED to be a Linux Guru to run one of their
machines. Would anyone care to see the marketing drivel going all the
way back to the Raq1?
If you were hacked you are a VICTIM and don't need to be attacked by
other list members.
There IS something being done to go after the script kiddies.
The FBI has new task forces working
on SOHO business computer hacks. Script-kiddies...don't be too shocked
when the white vans pull up on your Mommies and Daddies front lawn with
a search warrant and seizure writ for your spray-painted Legion of Dell box
that Daddy bought
for you last Christmas. Kewl eh?
Seems a lot of SOHO business (like lawyers) have moved to DSL networks and
home computing which
has led to a rash of SK hacking which has hurled a butt-load of angry
investigation
demands to the FBI. The FBI takes it very seriously now and when you can
prove you had
monetary damages (reimaging fees, downtime, labor costs, lost business etc)
done to you they will open a case.
Of course it's a double-edged sword. You can expect to perhaps have to give
up your own hardware as 'evidence' etc.
Just keep in mind that this kiddie hacking is a crime and a FELONY. If
you've been hacked and you are in Texas try giving
the FBI field office in Houston a call. If you need an agent's name contact
me offlist.
========================================================================
My name is .......... I am an FBI agent in the Houston Division. I
am currently in the preliminary stages of a hacking investigation that
leads me to believe your system may have been compromised. Because of
the nature of this hack, the computer and any logs associated with it
are very important to my investigation. Please contact me reference
this matter at your earliest convenience. You may reach me at
xxxxxx@xxxxxxxx
Should you wish to verify my position with the FBI, the FBI Houston
number is (713) 693-5000. Please call and ask for me and they will
forward you to my extension, or you may call the FBI Headquarters in
Washington DC at (202) 324-3000 and ask to be forwarded to the Houston
Division.
Thank you in advance for your cooperation,
SA xxxxxxxxxxxx
========================================================================