The time now is 07/19/08 - 22:07
Log in: Username: Password:
Search forums for:
  

Interesting read about insiders "getting even"

Post new topic   Reply to topic
Author Message
Paco
RealPoor Jedi
RealPoor Jedi


Joined: 13 Oct 2002
Posts: 12940
Location: Jacksonville, FL



PostPosted: 06/01/05 - 14:34    Post subject: Interesting read about insiders "getting even" Reply with quote

http://www.cert.org/archive/pdf/insidercross051105.pdf

neat stuff
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 14:46    Post subject: Reply with quote

These people had to write a dissertation to explain something that's always been obvious?

-Nah-
Back to top
Are you skilled mage or a hardboiled warrior in search for most suitable guild to join?
Or if you're already guild member ready to share some real PvP experience…
» Join the Guild Wars forum now! «
Paco
RealPoor Jedi
RealPoor Jedi


Joined: 13 Oct 2002
Posts: 12940
Location: Jacksonville, FL



PostPosted: 06/01/05 - 14:48    Post subject: Reply with quote

It was a study, actually. You might even learn something sir. Something that wasn't obvious to even you, perish the thought.
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 14:55    Post subject: Reply with quote

Paco wrote:
It was a study, actually. You might even learn something sir. Something that wasn't obvious to even you, perish the thought.


Umm... you and I are both in the IT industry (or were, whichever the case may be). You and I both know that even at the lowest levels of IT you have access to a lot of information that could potentially hurt the company you work for if not cripple it. Everything from bankroll software to email systems are entrusted to people who work in IT by corporate jackoffs who don't know shit about how it actually works.

What part of this wasn't obvious? Plus, that shit's long.

-Nah-
Back to top
Paco
RealPoor Jedi
RealPoor Jedi


Joined: 13 Oct 2002
Posts: 12940
Location: Jacksonville, FL



PostPosted: 06/01/05 - 15:00    Post subject: Reply with quote

Ahh, grasshoppa, you miss the point.

This is a brief summary for you then:

This is what NOT to do and get caught.

Better? Wink
Back to top
Confused
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 08 Feb 2004
Posts: 6730



PostPosted: 06/01/05 - 15:06    Post subject: Reply with quote

I have all sorts of access to $80 million/year and could probably take large sums relatively easily without leaving a trace, but I'm honest. Even if I hated the people I work for (they're really cool) I wouldn't take anything.
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 15:08    Post subject: Reply with quote

Let me expand on that last point a little bit here so it doesn't look like I'm talking out of my ass.

I've been working in JP Morgan Chase IT for 5 years now come August 18th.

In that time I have survived 3 mergers. Hambrecht&Quist >> Chase, Chase >> JP Morgan and JP Morgan >> BankOne.

When I first started working at Hambrecht&Quist I was doing Exchange support. 4 months after I started, Chase came in and since they're a Notes shop I got cross-trained in Notes support. I now had admin level to every Exchange AND Notes server on the West Coast and Latin America. That's a total of 5 orgs and about 250 servers, probably about 12,000 user accounts give or take a few grand.

Well lo and behold a year later JP Morgan comes in and I get moved into Messaging / Server Ops. My admin priviledges extended to now include NT servers in the same region (West Coast). I also now had admin access to the backup servers storing the data from all the machines on the West Coast.

Our Exchange infrastructure was eventually retired in its entirety so that went away, but I then went to work in AD systems on top of NT and Notes. Another level of admin rights granted.

Well as luck would have it BankOne comes in and moves me into problem management. Guess what? Because of the nature of the job I have to have access to EVERY SINGLE : Citrix server, Novell tree, AD/NT server, all their backups and oh hey guess what they forgot to remove my Notes access. I can still look at half the company's inbox by using the handy backdoor that was set up with no password - that's right no password on any of our superuser accounts for Lotus Notes, and a shared superuser account for all AD/NT servers that every member of the AD/NT support group has.

That's a lot of f*****g servers, a lot of f*****g passwords, and a lot of f*****g information I've gotten access to in a measly 5 years of working in an infrastructure that is so big and so cumbersome that access is never removed if a person is transitioned, only if they are terminated.

You mean to tell me I have to read all that doc to know that potentially I could dig up some piece of information that could not be traced back to me and that could cause financial damage to my company? I really don't think so.

-Nah-
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 15:10    Post subject: Reply with quote

Paco wrote:
Ahh, grasshoppa, you miss the point.

This is a brief summary for you then:

This is what NOT to do and get caught.

Better? Wink


I see your point.. but I guess I would rather see a study on how f**k top corporate IT is and how we can improve that monster.

-Nah-
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 15:15    Post subject: Reply with quote

I also want to add that I got cheated. The most I can do I think is leak trader data. I never got into online banking or personal investments. That's where the REAL money is at. If all you do is wholesale banking or stock trading, you're f****d because those guys can't even have external email addresses thanks to SEC regulations, so the amount of data you can mine from them is very scant. You have to know what to look for, and I don't .. so no money to be made there for me Sad

-Nah-
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 15:18    Post subject: Reply with quote

Ok Paco you piqued my interest so I've looked at about half that document. I take back what I said at first. This really is specific to disgruntled employees, not just marginally-happy or apathetic employees looking to make a quick buck off their employers.

Wrong study. Can you find one for me that's more what I'm looking for? Wink

-Nah-
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 15:25    Post subject: Reply with quote

Gah, I just keep going back to it and I keep drawing up a big scratchy-head face....

I understand now what I said this shit was obvious from the start. Things like "Management needs to take a better look at employees experiencing negative work circumstances" (paraphrased)

Do you let your ex drive your car after you broke up with him/her?
Do you let someone in your house who you've had a scuffle with in the past or who has threatened you or your family?
Do you leave the keys to your safe deposit box with someone who has a crack habit?

Why would you let someone retain access or at least remain unsupervised when you know they're being skipped for a promotion or being fired?

See Paco, things like this are, I hate to say it, OBVIOUS. I know that's not the *whole* point of the study but it sure comes up with some pretty no-brainer conculsions in some cases.

-Nah-
Back to top
Occulis
RealPoor Jedi
RealPoor Jedi


Joined: 11 Oct 2002
Posts: 13293
Location: Moral Relativity Central



PostPosted: 06/01/05 - 16:17    Post subject: Reply with quote

real f****n - live girls - c**k on t**t action - click here
Back to top
wellspoken
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 01 Feb 2003
Posts: 7137



PostPosted: 06/01/05 - 16:18    Post subject: Reply with quote

Occulis wrote:
real f****n - live girls - c**k on t**t action - click here



click
Back to top
Paco
RealPoor Jedi
RealPoor Jedi


Joined: 13 Oct 2002
Posts: 12940
Location: Jacksonville, FL



PostPosted: 06/01/05 - 16:55    Post subject: Reply with quote

Ok, I guess I should have shot the first inquiry with the following:

Sir,maytheforcebewithyou,

The world does not revolve around you.

maytheforcebewithyou,

Paco
Back to top
NickPSH
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 5680



PostPosted: 06/01/05 - 17:01    Post subject: Reply with quote

I'm eating a taco.
Back to top
Frax
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8489
Location: Fuck yoiu fucking fuckers



PostPosted: 06/01/05 - 17:15    Post subject: Reply with quote

NickPSH wrote:
I'm eating a taco.


The same taco that paco fondled?
Back to top
neafy
Rookie
Rookie


Joined: 27 May 2005
Posts: 84



PostPosted: 06/01/05 - 17:18    Post subject: Reply with quote

roflamo
Back to top
NickPSH
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 5680



PostPosted: 06/01/05 - 17:21    Post subject: Reply with quote

Frax wrote:
NickPSH wrote:
I'm eating a taco.


The same taco that paco fondled?


Negative captain.
Back to top
Manuva
Banned
Banned


Joined: 12 Oct 2002
Posts: 2536



PostPosted: 06/01/05 - 21:46    Post subject: Reply with quote

Nahualli wrote:
Let me expand on that last point a little bit here so it doesn't look like I'm talking out of my ass.

I've been working in JP Morgan Chase IT for 5 years now come August 18th.

In that time I have survived 3 mergers. Hambrecht&Quist >> Chase, Chase >> JP Morgan and JP Morgan >> BankOne.

-Nah-


Dude

If you would happen to erase the balance on my bank one credit card...I'd consent to you f*****g me in the ass.
Back to top
Nahualli
RealPoor Master of Posts
RealPoor Master of Posts


Joined: 11 Oct 2002
Posts: 8461



PostPosted: 06/01/05 - 22:24    Post subject: Reply with quote

Manuva wrote:
Nahualli wrote:
Let me expand on that last point a little bit here so it doesn't look like I'm talking out of my ass.

I've been working in JP Morgan Chase IT for 5 years now come August 18th.

In that time I have survived 3 mergers. Hambrecht&Quist >> Chase, Chase >> JP Morgan and JP Morgan >> BankOne.

-Nah-


Dude

If you would happen to erase the balance on my bank one credit card...I'd consent to you f*****g me in the ass.


See, sometimes I really wish I did work in that department, I would have offers like yours coming out of my ears. Unfortunately, I don't. Sorry man

-Nah-
Back to top
Manuva
Banned
Banned


Joined: 12 Oct 2002
Posts: 2536



PostPosted: 06/02/05 - 01:48    Post subject: Reply with quote

Don't be sorry, your loss as much as mine.

My virgin anus would be nice and tight.

And we could play the "NO PLEASE DONT GOD KEEP IT OUT OF MY ASS AAAAAAH WHAT THE f**k IM NOT LIKE THAT HELP HELP HELP HELP HELP



.....hey...that don't feel so bad" game
Back to top
Display posts from previous:   
Post new topic   Reply to topic
Page 1 of 1

Related topics:
Interesting...
Interesting game-altering changes going in. BWL & BoS:
interesting statistic from Zogby
uninteresting
Interesting Email I got
Interesting.....(NSNS)
pretty interesting show in Discovery Channel
Interesting reading and to think you might be part of it!
Interesting Medical Research
Interesting topic on intelligent vs unintelligent Presidents
Political Remix's (Songs). This is pretty interesting.
uber geek info: interesting read
my email is more interesting than yours
interesting article about the guy killed by British police
Interesting approach to health...
Interesting Xmas present for a family
Interesting Rally Car Snippet
Interesting fact
Aint this interesting
old but interesting.