Mar 16

There’s no legal way for using a botnet…

Security News -
1 Star2 Stars3 Stars4 Stars5 Stars (5 votes, average: 5.00 out of 5)
Loading ... Loading ...
Add comments

Hi all!

As you might have read, BBC Click has done some investigative journalism by “acquiring” (buying?) a botnet consisting some 22 000 computers and used it to create DDoS and email attacks. This was done just for testing how easy it would be….

Surprise surprise, it really is easy. But it certainly is not ethical and it might be illegal even in Britain, as I’ve stated in the followed stories by SC Magazine and infosecurity. I know for sure it’s illegal in Finland, for several reasons. BBC’s story raised awareness towards network security but is strongly overshadowed by the illegal/unethical means in it.

So how could’ve BBC done this ethically and/or lawfully? I can’t find a way:

·         Paying money to criminals for acquiring a botnet for testing is not the way we fight against internet crime. This is just common sense.
·         Asking people to participate to a botnet attack sounds like inciting them to criminality. Not asking but still using their computers is even worse.
·         I wouldn’t conduct this kind of research on open internet. It creates excess traffic, which might be interfering and thus illegal.

I don’t want to attack towards BBC Click too hard, clearly they didn’t know what they were in to. However, I wouldn’t courage other medias to follow either. Laws, regulations and “code of conduct” for information networks is available for all to see. Consult an expert if you don’t know or in case of uncertainty. We’re here.

//Opi

written by Olli-Pekka Niemi - 2,172 views \\ tags:

One Response to “There’s no legal way for using a botnet…”

  1. RoarinPenguin Says:

    Good job Olli… I totally endorse, share your opinion, and agree!
    In my humble opinion, it’s certainly a bad way of rising hype by acting this way!
    If I would like to know what is the power of an atomic bomb, I certainly would not explode one in my garden… or even in Italy… or even elsewhere on the planet (ehm… watching history, somebody might not agree with my viewpoint ;) )
    Still, there’s far too many script kiddies on the ‘Net without having also press getting curious about this dangerous topic… and even highlighting how easy it is to operate a botnet.
    As a security professional, I’m seriously disappointed by this approach!
    Luckily they don’t deal with poisoned potions ;)

Leave a Reply

You must be logged in to post a comment.