Thursday, June 22, 2006

hackers, blackhat and whitehat

So what incentive do these hackers with technical knowledge have in discovering vulnerabilities and publishing the information? I believe you can divide them into two different groups. There are those who do it because they want to help in getting the problem fixed by making everyone aware it exists and how it works and are trying to help out the web community in general by doing so. While they have good intentions, those intentions cannot stop would be criminals from taking what they've discovered and using it maliciously. On the other hand are those who discover the security hole and may or may not want the problem fixed and they release it in a way that may be easier to use maliciously against websites or to people they know will use it in such a way. The latter are the ones you need to worry about because they don't care about the well being of the web and could care less about everyone's websites being defaced by the script kiddies.


