Now Available:

line

Featured Resources:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Rebecca.

« Web 2.0 Security, Privacy & Policies | Main | Obama's and McCain's Data Protection Plans »

Hackers Are "Rattlesnakes Without the Rattles"

Research into the psychology of hackers has been going on ever since Cap'n Crunch cereal whistles were used to make free phone calls to anywhere in the world.

I saw the ABC News article...

"Hackers' mind-set: They've done nothing wrong...Psychiatrists: Hackers Are "Rattlesnakes Without the Rattles""

and thought I'd see if they've come up with any new insights into the minds of cybercriminals.

Not really; the age-old view of many hackers to consider their hacking activities as not hurting any person, but just a justifiable activity against computer technology.

If they see an opportunity to exploit an vulnerability, many to most hackers basically view it as okay to do it for their gain.

However, this part of the story,

"Many cybercrooks are young men in the U.S. and Eastern Europe who think they're doing the system a favor by exposing flaws and have no qualms about opportunities to exploit rich Westerners, according to police, researchers and hackers."

is very outdated! This probably was the case back in the 80's and into the 90's, but more recent research studies show that hacking and related cybercrime has increasingly become criminals' crimes of choice because of the high profit, comparative ease with which it is committed against unsecured systems and by social engineering un-trained computer users, as well as how rarely cyber criminals are caught.

However, I do believe that many-to-most cybercriminals have convinced themselves that they are doing nothing wrong.

I really like the 'Rattlesnakes Without the Rattles" analogy!

TrackBack

TrackBack URL for this entry:
http://www.realtime-itcompliance.com/type/mt-tb.cgi/837

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Rebecca Herold's Bio:

Rebecca Herold, CISSP, CIPP, CISM, CISA, FLMI, has been providing information security, privacy and regulatory assistance and services to organizations from a wide range of industries for the past two decades. Rebecca was instrumental in building the information security and privacy program while at Principal Financial Group, which was awarded the CSI Information Security Program of the Year Award in 1998. IT Security ranked Rebecca as one of the top 59 IT security influencers, and Computerworld put Rebecca their list of the world's best privacy experts and on their list of the best privacy consulting firms in both 2007 and 2008. Rebecca has been CPO for two consulting organizations, and has had her own information privacy, security and compliance business since 2004. Rebecca has written chapters for several books, dozens of articles, and has been writing a monthly privacy column for the CSI Alert newsletter since the beginning of 2001, and is working on her 13th book. Some of her other books include The Privacy Papers, Managing an Information Security and Privacy Awareness and Training Program, The Definitive Guide to Security Inside the Perimeter (Realtime Publishers), The Shortcut Guide to Improving IT Service Support through ITIL (Realtime Publishers), and The Practical Guide to HIPAA Privacy and Security Compliance. In addition, Rebecca is the leader of The Realtime IT Compliance Community where she posts to her IT Compliance weblog. You can contact Rebecca at: rebecca_herold@realtimepublishers.net.