You are here: silicon.com > Software > Security Strategy

Security Strategy

Microsoft hack update - hacker 'won't be caught'

Security experts have played down the chances of investigators finding the source of the attack on Microsoft's internal network.

By John Oates

Published: 27 October 2000 14:10 GMT

News that the software giant had been hacked broke earlier today, with reports suggesting that some source code had been accessed - a rumour denied by Microsoft.

Either way, industry experts doubt if Microsoft or the FBI - which has been informed of the incident - will be able to track down the perpetrator.

Mathias Elvang, managing director of Defcom UK, who specialises in anti-hacking security software, said: "I'd be very surprised if they have found the location the attack came from. It's very hard to trace such attacks except in real time. I don't know all the tools the FBI has available, but it depends on what relationship they have with investigators in countries all over the world."

It has been reported that the attack came from St Petersburg, Russia, but neither Microsoft nor the FBI will confirm this.

According to Elvang, if the hacker was determined not to get caught, he (or she) will have disguised the location by routing the attack via dozens of servers across the world.

Elvang also doubted that industrial espionage was behind the hack. He said: "If this was industrial espionage it would not have reached the public domain, a deal would have been reached in private."

Aled Miles, managing director of Symantec Northern Europe, agreed, saying: "The internet has no boundaries. Law enforcement across international boundaries is very difficult - the G8 summit is trying to sort this out at the moment. Catching the perpetrators of crimes like these, and getting evidence, is extremely hard."

Miles added that despite its unpopularity, the UK's Regulation of Investigatory Powers Bill (othewise known as the Snooping Bill) does give law enforcement agencies a chance to catch such criminals.

He said there is a need to increase the deterrent to commit such crimes. He also feared that if this became a "data hostage" situation it would be impossible to track the perpetrators down.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
Senior Account Manager-Public Sector-IT Services

You will purely target the Public Sector as this area is continuing to spend in the current climate, areas of particular interest include Health, NHS ...

Regional Manager Security Research Lead Malware Italy Spain or Sweden

It is a function of the role to support converting proof-of-concepts into implementations as a consultant.The role also encompasses acting as the key ...

Information Security Analyst (Attack Monitoring/Data Leakage/CISSP/CEH

Information Security Analyst (Attack Monitoring/Data Leakage/CISSP/CEH). A highly risk-aware Attack Monitoring Analyst is required for a leading ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: