On mySimon: Rite-Lite Super Bright LED Puck Lights
BNET Business Network:
BNET
TechRepublic
ZDNet

July 17th, 2008

Dreams come true: network guy holds city hostage

Posted by Paul Murphy @ 12:15 am

Categories: General, Government

Tags: Computer Network, Network, Payroll, Computer, Productivity, Payroll Solutions, Operational Accounting, Networking, Finance, Paul Murphy

A few well chosen words from the technically knowledgeable Jaxon Van Derbeken, a staff writer for the San Francisco Chronicle as published on July 15/08:

(07-14) 19:23 PDT SAN FRANCISCO — A disgruntled city computer engineer has virtually commandeered San Francisco’s new multimillion-dollar computer network, altering it to deny access to top administrators even as he sits in jail on $5 million bail, authorities said Monday.

Terry Childs, a 43-year-old computer network administrator who lives in Pittsburg, has been charged with four counts of computer tampering and is scheduled to be arraigned today.

Prosecutors say Childs, who works in the Department of Technology at a base salary of just over $126,000, tampered with the city’s new FiberWAN (Wide Area Network), where records such as officials’ e-mails, city payroll files, confidential law enforcement documents and jail inmates’ bookings are stored.

Childs created a password that granted him exclusive access to the system, authorities said. He initially gave pass codes to police, but they didn’t work. When pressed, Childs refused to divulge the real code even when threatened with arrest, they said.

Authorities say Childs began tampering with the computer system June 20. The damage is still being assessed, but authorities say undoing his denial of access to other system administrators could cost millions of dollars.

Officials also said they feared that although Childs is in jail, he may have enabled a third party to access the system by telephone or other electronic device and order the destruction of hundreds of thousands of sensitive documents.

Authorities have searched Childs’ home and car for a device that could be used in such an attack, but so far no such evidence has been found.

Childs, according to payroll records, earned $126,735 in base pay in 2007 and additional premium pay of $22,534, for a total of $149,269. Vinson said the extra money was apparently compensation for being on-call as a trouble-shooter.

Besides the shiny new definition of optical storage, I think the reporter here missed Wikipedia’s photo of the “device” the police were looking for in the back seat of the guy’s car.

All joking aside, lots of bosses worry about situations like this - and I’ve known rather a lot more than one (comes from being a consultant) IT guy who dreamt of doing something like this, but I’ve never seen anyone actually pull it off.

So I want to know two things: $149,269 for a network guy?! ; and, how?

I mean, really, how? the system is said to be running normally so he didn’t mass encrypt the databases - and what that leaves is BIOS changes if the servers are Windows and password control changes if the lockouts are based on router/switch controls. Either way, however, it’s a scriptable fix requiring, at worst, local connection to each device and a reboot/interrupt with a fully scriptable delete and reconfig - figure ten to fifteen minutes per device for a pretty finite number of devices.

So - somebody tell me: how could this kind of thing be done?

Paul MurphyPaul Murphy (a pseudonym) is an IT consultant specializing in Unix and related technologies. See his full profile and disclosure of his industry affiliations.


Email Paul Murphy

Subscribe to Managing L'unix via Email alerts or RSS.

  • Talkback
  • Most Recent of 37 Talkback(s)
RE: Dreams come true: network guy holds city hostage
you are the kind of (network guys) people that don't need to be in this position ,the position is one of service ,,Not sabotage or of holding hostage someones property, But maintaining and securing sa... (Read the rest)
Posted by: demerlin_99@... Posted on: 07/29/08 You are currently: a Guest | | Terms of Use
MY HERO  algzdnet | 07/17/08
Hero eh ?  zomalaja | 07/17/08
Hero eh, not really....  algzdnet | 07/17/08
Amen!...  socialism=nowhere | 07/17/08
Salary  Salonikios | 07/17/08
The Pittsburgh he lives in  murph_zZDNet Moderator | 07/17/08
pittsburg  SURF2DI4@... | 07/17/08
Thanks  Salonikios | 07/17/08
Thank you for the clarification  drprod@... | 07/17/08
Admin access  Salonikios | 07/17/08
Sure, but  murph_zZDNet Moderator | 07/17/08
You forgot  stan@... | 07/17/08
Admin  zomalaja | 07/17/08
Agree  Salonikios | 07/17/08
RE: Dreams come true: network guy holds city hostage  Linux User 147560 | 07/17/08
The speculation is  murph_zZDNet Moderator | 07/17/08
I heard  Shelendrea | 07/17/08
RE: Dreams come true: network guy holds city hostage  Topguy | 07/17/08
actualy  isulzer | 07/18/08
It has to be encryption, not passwords that are the obstacle  toadlife | 07/21/08
Me and this guy have something in common  Roger Ramjet | 07/17/08
Forgive the Obvious Reply...  gribblq | 07/17/08
Something similar  fairportfan | 07/17/08
RE: Dreams come true: network guy holds city hostage  dbell5 | 07/17/08
RE: One suggestion on how it could be done  murph_zZDNet Moderator | 07/17/08
How? I'll tell you how!  mejohnsn | 07/17/08
Agreed: management failure is clearly a root cause  murph_zZDNet Moderator | 07/17/08
Likely but not certain  Anton Philidor | 07/17/08
Don't hold your breath...  jasonp@... | 07/18/08
It's not "how did he do it?"  NetArch. | 07/18/08
If the master password is changed suddenly...  Anton Philidor | 07/17/08
RE: Dreams come true: network guy holds city hostage  mejohnsn | 07/17/08
Auditor letter  murph_zZDNet Moderator | 07/17/08
RE: Dreams come true: network guy holds city hostage  kokuryu | 07/17/08
millions...  NetArch. | 07/18/08
RE: Dreams come true: network guy holds city hostage  roddic | 07/20/08
RE: Dreams come true: network guy holds city hostage  demerlin_99@... | 07/29/08

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Archives

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here