
Security experts have played down the chances of investigators finding the source of the attack on Microsoft's internal network.
By John Oates
Published: 27 October 2000 14:10 GMT
News that the software giant had been hacked broke earlier today, with reports suggesting that some source code had been accessed - a rumour denied by Microsoft.
Either way, industry experts doubt if Microsoft or the FBI - which has been informed of the incident - will be able to track down the perpetrator.
Mathias Elvang, managing director of Defcom UK, who specialises in anti-hacking security software, said: "I'd be very surprised if they have found the location the attack came from. It's very hard to trace such attacks except in real time. I don't know all the tools the FBI has available, but it depends on what relationship they have with investigators in countries all over the world."
It has been reported that the attack came from St Petersburg, Russia, but neither Microsoft nor the FBI will confirm this.
According to Elvang, if the hacker was determined not to get caught, he (or she) will have disguised the location by routing the attack via dozens of servers across the world.
Elvang also doubted that industrial espionage was behind the hack. He said: "If this was industrial espionage it would not have reached the public domain, a deal would have been reached in private."
Aled Miles, managing director of Symantec Northern Europe, agreed, saying: "The internet has no boundaries. Law enforcement across international boundaries is very difficult - the G8 summit is trying to sort this out at the moment. Catching the perpetrators of crimes like these, and getting evidence, is extremely hard."
Miles added that despite its unpopularity, the UK's Regulation of Investigatory Powers Bill (othewise known as the Snooping Bill) does give law enforcement agencies a chance to catch such criminals.
He said there is a need to increase the deterrent to commit such crimes. He also feared that if this became a "data hostage" situation it would be impossible to track the perpetrators down.
You will purely target the Public Sector as this area is continuing to spend in the current climate, areas of particular interest include Health, NHS ...
It is a function of the role to support converting proof-of-concepts into implementations as a consultant.The role also encompasses acting as the key ...
Information Security Analyst (Attack Monitoring/Data Leakage/CISSP/CEH). A highly risk-aware Attack Monitoring Analyst is required for a leading ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business
Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business