I've *asked* friends of mine to "audit" some of my systems before, but I've never 
run any executables they give or so much as given them a shell. The
objective the test is that they have to get the shell themselves.

If you run a program for him, then *you* are the weak link in the security
and your system may have been compromised due to what is politely called 
"social engineering" attack method.

--Matt

--
  Matt Galgoci
  Job title: export title=`dd if=/dev/random bs=24 count=1`
             echo $title

On Tue, 7 Dec 1999, Chris Worth wrote:

> 
> well if the guy is telling him to use programs that are trojans, I'd say he's 
>certainly NOT 
> a friend.
> 
> 
> 
> On Mon, 22 Nov 1999 01:09:20 -0800, Mike Erickson wrote:
> 
> >Bob Taylor wrote:
> >> 
> >> In message <[EMAIL PROTECTED]>, "Wellington
> >> Terumi Uemura"
> >>  writes:
> >> > Considering the security of my server(RedHat6.1),and the every Linux
> >> > community,i talk to a big friend of mine(a hacker) to try to hack my
> >> > sistem,to test the server and see how the server respond to that kind of
> >> [snip]
> >>
> >> IMHO this person isn't a *friend*.
> >
> >What are you talking about? This is in the finest tradition of human
> >history? How do you figure something out better than doing it
> >first-hand. Ever taken apart a turnkey mechanical clock?
> >
> >Maybe it's just the engineer in me...
> >-Mike
> >
> >-- 
> >+---------------------------------------------------+
> >| Mike Erickson                     [EMAIL PROTECTED] |
> >| "Clothes make the man. Naked people have little   |
> >|     or no influence on society. - Mark Twain      |
> >+---------------------------------------------------+
> >
> >
> >-- 
> >To unsubscribe: mail [EMAIL PROTECTED] with "unsubscribe"
> >as the Subject.
> >
> 
> 
> 
> -- 
> To unsubscribe: mail [EMAIL PROTECTED] with "unsubscribe"
> as the Subject.
> 


-- 
To unsubscribe: mail [EMAIL PROTECTED] with "unsubscribe"
as the Subject.

Reply via email to