[ILUG] [OT] naughton, the net, be nice

From: kevin lyda (kevin at domain suberic.net)
Date: Tue 21 Sep 1999 - 12:20:23 IST


in light of patrick naughton's arrest the other day i was thinking just how
easy it would be to destroy someone's reputation and/or their life. he
met a 13 year old for illicit relations (actually an undercover cop) and
when his laptop was searched he was found to have child porn on it.

maybe he did it - in fact he probably did. but it's so easy to see how
he could be framed:

email html docs with this embedded tag:

img src=http://sexxx.pixxx.pr0n.com/girl/13/wow.gif width=1 height=1

repeat.

harder, but still possible, find the websites your target reads, hack it,
and add the above. not really that workable though. and of course our
favorite os from redmond would be perfect here. imagine a melissa-like
virus that downloaded child porn. better then the html option as it
ends up in your files. couple that with hidden directories and the
target will get a real surprise when the police check his laptop.

if you read the reports the online chats had naughton giving his
work number. even if it's unlisted, simple social engineering
would do wonders here. and then they set up the meeting via a chat
session. depending on how well you know the target (the investigation
lasted several months) you can come up with a way to lure him to the
police. it would be easy enough to lure an ilug member to a pub for
instance.

rather interesting mental exercises there. mildly worrying too. i
think the moral of the story goes beyond "use linux." :) the best
moral would be, "be nice, don't make enemies." (come to think of it,
not hoarding your code and releasing it to the net can help here, so
maybe "use linux" still fits...) ahem. anyway, let's hope police
forces are aware of their position in things like this - i.e. the
possibility of being duped. and generally, play careful out there.

kevin



This archive was generated by hypermail 2.1.6 : Thu 06 Feb 2003 - 13:04:35 GMT