home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.security.misc
- Path: sparky!uunet!news.mtholyoke.edu!jbotz
- From: jbotz@mtholyoke.edu (Jurgen Botz)
- Subject: Re: Two hackers caught tapping into Boeing, federal computers
- Message-ID: <BxnnzF.G9o@mtholyoke.edu>
- Sender: news@mtholyoke.edu (USENET News System)
- Organization: Mount Holyoke College
- References: <1992Nov12.084549.5128@unix.brighton.ac.uk> <1992Nov12.142251.9131@hubcap.clemson.edu>
- Date: Fri, 13 Nov 1992 12:57:14 GMT
- Lines: 26
-
- In article <1992Nov12.142251.9131@hubcap.clemson.edu> stehman%citron.cs.clemson.edu@hubcap.clemson.edu writes:
- >From article <1992Nov12.084549.5128@unix.brighton.ac.uk>, by ddv@unix.brighton.ac.uk (Domenico De Vitto):
- >> Any org. that has a _root_ password in _a_ dictionary gets all it deserves.
- >
- >Would you like to require people to read c.s.m for a couple of months before
- >they're allowed to purchase a computer?
-
- Now that's just rediculous... at our site there are maybe two or three
- people who read c.s.m, but 90% of our (hundreds of) users know not to
- use dictionary words for passwords on their /personal/ accounts, never
- mind the root account. And we're talking here about users who barely
- know enough to get in and out of mail and wouldn't know Unix from Messy
- Dogs.
-
- And that's completely beside the point that somebody charged with the
- responsibility for administering a multi-user computer system has a
- responsibility to acquire at least some basic knowlege about security
- issues. There are dozens of good books on the subject, plus several
- highly readable short summary documents available freely on the Net...
- in short, the level of negligence in evidence here is inexcusable.
-
- --
- Jurgen Botz | Internet: JBotz@mtholyoke.edu
- Academic Systems Consultant | Bitnet: JBotz@mhc.bitnet
- Mount Holyoke College | Voice: (US) 413-538-2375 (daytime)
- South Hadley, MA, USA | Snail Mail: J. Botz, 01075-0629
-