一个人收到了凯文·米特尼克赠送的梦想之车,而他曾帮助将米特尼克送进监狱。
A man was gifted his dream car by Kevin Mitnick, who he helped put in prison

原始链接: https://www.thedrive.com/news/this-man-was-gifted-his-dream-car-by-the-notorious-hacker-he-put-in-prison

20世纪90年代,网络管理员肖恩·纳恩利(Shawn Nunley)成为了传奇黑客凯文·米特尼克(Kevin Mitnick)意想不到的克星。当时,米特尼克试图冒充同事,通过社会工程学手段潜入Novell的安全网络,但纳恩利察觉到了异常并录下了通话。这段录音成为了米特尼克最终被捕的主要证据。 尽管两人以对立的身份结识,但在米特尼克出狱后,他们却建立了一段出人意料的终身友谊。米特尼克转型成为了一名成功的网络安全顾问,帮助他人防御他曾经使用过的攻击手段。2023年米特尼克去世时,他给曾经的目标纳恩利留下了最后一份礼物:一笔足以购买他梦想之车——保时捷911 Carrera 4 GTS——的资金。这段故事为一场高风险的法律博弈画上了一个罕见而温暖的句号,展现了一段由职业冲突磨砺而出的非凡情谊。

最近的一则 Hacker News 帖子讨论了凯文·米特尼克(Kevin Mitnick)将一辆车送给当初将他送进监狱的人的故事,这突显了这位传奇黑客身上复杂的人性。 尽管一些评论者欣赏这一举动背后感性的一面,但讨论很快转向了对米特尼克出狱后职业生涯的批判性分析。多位用户指出,他作为安全顾问的声誉往往超出了其实际的技术效用。批评者认为,他的专业报告缺乏深入的“系统思维”,更侧重于戏剧性的物理安全噱头和羞辱员工,而非解决真正的架构漏洞。 归根结底,这篇讨论反映了他那两极分化的遗产:对一些人来说,他仍然是黑客史上一个标志性时代的象征;而另一些人则认为他是一位社会工程学大师,其传奇色彩更多是源于他操纵公众认知的本领,而非他在网络安全方面的精湛技术。
相关文章

原文

If you’re any kind of car geek, you have a wild gift car fantasy. You meet a bitter divorcee who gives away an ex’s prized machine out of pure spite; or maybe the guy whose tire you stopped to change turns out to be a flip-flop billionaire who rewards you with your exact spec because it’s simply collecting dust that week, and hey, you stopped; your humanity’s worth a Dodge Viper to a guy who can afford to run a bidet on day-old moon water, or something.

OK, that one might be mine.

As plausible as we’d like these scenarios to be, they just don’t happen that often. The first pop-culture example to spring to mind—John Cusack’s Rob Gordon scoring a vinyl collection from a jilted ex in “High Fidelity“—ended up on the cutting room floor, and in a movie where the same character comically fantasizes about his colleagues beating a phenomenally douchey Tim Robbins with an air conditioner (Go ahead; we both know you want to click that).

Fear not; nobody gets bludgeoned in this story, but it’s pretty wild nonetheless. It’ll help if you know the name Kevin Mitnick. He was a hacker-turned-security consultant who, later in life, helped shape the modern white-hat. Just how prototypical was Mitnick? He put himself on the proverbial map in 1979 by dialing into a software company’s server and copying its forthcoming operating system release in its entirety. Imagine convincing a Microsoft server to cough over an early copy of Windows 12 using little more than a phone number.

Some online criticism implies that Mitnick was more of a social engineer than a “hacker” in the sense that we distinguish them today, but the reality is that a great deal of “hacking” is still dependent on an authorized user making a mistake—usually by revealing sensitive login data. For a reasonably realistic take on modern black-hatting, I recommend Mr. Robot; be warned, that series is heavy.

So, how do we get from old-school hacker to wild gift-car fantasy? In this case, by way of 14 counts of felony wire fraud. That’s where Shawn Nunley comes in.

Back in the ’90s, Nunley worked for Novell, a now-defunct brand that produced enterprise software—server operating systems, messaging systems, that sort of thing. GroupWise is probably its best-known brand among the general public today, but the juicy target back then was NetWare, which was the backbone of many a corporate/government/academic network. Naturally, this made it a valuable target for a hacker like Mitnick.

“Back in the 90s, Kevin was trying very hard to hack into Novell’s network,” Nunley wrote. “I was a network administrator. Of course, we had no idea it was Kevin, but things were happening that made it fairly obvious we had a persistent threat. Phones ringing sequentially throughout the building (war dialing) and all sorts of other signs… we knew something was up.”

This was Mitnick, using a slightly more sophisticated version of the same tactic that earned him his first big score in 1979.

“Late one night at home, I got a phone call from a Novell employee named Gabe Nault,” Nunley wrote. “The ’employee’ wanted direct inbound dial access. Since I was responsible for the entire network’s inbound connectivity, I knew this type of request was abnormal and against policy.”

And Mitnick, no amateur, had obviously succeeded in extracting at least some private information from Novell employees prior to his Hail Mary phone call:

“…this guy had a story about working on a top-secret project called Snowbird (real) and needing to make some emergency code changes, but he was on vacation in Vail at a hotel,” Nunley continued. “He needed the coveted, policy-breaking, direct inbound modem access. Right. He even mentioned his vacation in Vail, which conveniently matched the greeting on Gabe Nault’s voicemail. But it all felt wrong.”

“With a feeling of suspicion creeping in, I played it cool,” Nunley wrote. “I said, ‘Hey man, I’d love to help you out, but I can’t do what you want from here at home anyway, so I’ll have to do it in the morning as soon as I get to the office. But in case I forget, please leave me a voicemail.’ He agreed, and that was that.”

“When I got to work, the voicemail was there, and I immediately recorded it onto a cassette recorder for safekeeping,” he wrote. “That recording became the primary evidence in Kevin’s case.”

When Mitnick was caught, that’s when Nunley learned that the voicemail was the only meaningful evidence that the Justice Department had against him. At first, he was on board with the prosecution, but after five years of trial delays, Nunley grew weary of the way the law was treating his adversary, and he stopped working with the DOJ. Shortly thereafter, Mitnick took a plea deal and was released.

When he got out, Mitnick contacted Nunley to apologize. Their bury-the-hatchet moment was even immortalized by Wired, and they went on to become good friends.

Mitnick was barred from selling the story of his legal entanglements for seven years after his release, invoking legal precedent intended to curb profiteering by serial killers. But Mitnick was able to find plenty of work teaching people how to defend against the intrusion tactics he’d spent decades refining. He would go on to found two consulting businesses, one of which his family still owns and operates.

When Mitnick passed from pancreatic cancer in 2023, he left Nunley a gift—enough to buy his dream car, a 911 Carrera 4 GTS.

“I have had a wonderful time watching him develop into a real man,” Nunley said of his friend. “I am truly sad he is gone as he was a big part of my life for the last quarter century.”

With any luck, he’ll have his 911 for at least another quarter century, if not more.

h/t to Zerin! Got a news tip? Let us know at [email protected]!

Byron is an editor at The Drive with a keen eye for infrastructure, sales and regulatory stories.


联系我们 contact @ memedata.com