Video: Hackers - what are they good for?

Absolutely nothing?

Published: 2 May 2007 14:56 GMT by Will Sturgeon

Tags: hacker, white hat

Recommend this video to other Internet users

close close

Security experts have hit out at the notion that there are benefits to be had from engaging with cyber criminals in order to better understand emerging threats.

However, many are calling on the industry and media to recognise the work of so-called 'ethical hackers' and to acknowledge that not all hackers are criminals.

Bruce Schneier, CTO at BT Counterpane, told silicon.com: "Hackers are not criminals. Hackers are individuals who know how to subvert systems. I don't think we open a dialogue with the criminals, like we don't open a dialogue with the mafia but the techniques that hackers understand are very important for us to understand."

However, the line between ethical hacking and the more common notion that hacking is related to criminal activity is blurred for many people and creates considerable grey areas. But for one lawyer it is pretty clear-cut. Ethical hackers - to be considered as such - must have been authorised by the rightful owner or administrator to test a system or application.

Check out the silicon.com InfoSec podcast

Featuring lively discussion on phishing, spam and the criminal fraternity. Listen now.

John Fell, partner at law firm Pinsent and Masons, said the issue of authorisation is critical. "Lawyers love definitions," said Fell. "'Black hat', 'white hat', 'ethical hacker'. But when you talk about ethical hacking there has to be some authorisation."

Those working on their own initiative fall outside the legal definition, said Fell.

'White hat' hackers

Graham Cluley, senior technology consultant at Sophos, said the actions of some 'white hat' hackers who find and disclose vulnerabilities can be as damaging as criminal activity if disclosure is handled irresponsibly.

Peter Wood from First Base Technologies is a well-established ethical hacker - or penetration tester - and says he must tread very carefully in his line of work. Wood normally only begins his attempts to breach the defences at companies hiring his services once HR and IT departments have given him sign-off.

However, beyond that, he said: "We try to take the same approach as people who attempt to break in with malicious intent."

The question of whether criminally motivated hackers can deliver value to businesses and help understand emerging threats also divided experts speaking to silicon.com (see the video above).

But First Base's Wood said many attackers now need no specialist knowledge due to the vast amounts of tools made available on the internet. As such, the notion that hackers possess a gift for complex code is far from the truth.

Sounding a warning to businesses, Wood added: "Attacks are getting easier and easier for people who may not be that technical."



  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Software Release Engineer, Unix, Linux, Internet.

User-level experience of Unix (preferably Red Hat Linux) By submitting your CV and cover letter to us, you give express consent to us using your ...

Junior Network Engineer Cisco Up to 20K

Any of the following would be useful, but is not essential:- A good knowledge of Cisco IOS CLI and Cisco hardware platforms- Knowledge of core ...

Information Assurance and Network Defence Specialists

Information Assurance and Network Defence Specialists 24,450 - 37,900 Cheltenham With knowledge in this area already, you’ll know in general ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: