Thursday, May 10, 2012

Chapter 3 - Case Study 3: Whistle-Blower Divides IT Security Community

1. Do you think that Mike Lynn acted in a responsible manner? Why or why not?

A. - For me it is a yes. Why? because Lynn just want to give details to the people about the ISS and IOS. He was just responsible enough and he even resigned just to report the right thing. 

2. Do you think that Cisco and ISS were right to pull the plug on Lynn’s presentation at the
Black Hat conference? Why or why not?


A. - No. Lynn was just trying to present his report about this black hat thing. It only shows that Cisco and ISS were guilty and hiding something. They were not fair on this business and they only ruined their conference. As what they did there are a lot of questions that people wants to ask.


3. Outline a more reasonable approach toward communicating the flaw in the Cisco routers that
would have led to the problem being promptly addressed without stirring up animosity among
the parties involved.


A. - Through reverse engineering, he discovered that it was possible to create a network
worm that could propagate itself as it attacked and took control of routers across the Internet.
Lynn’s discovery was momentous, and he decided that he had to speak out and let IT security
professionals and the public know about the danger.

No comments:

Post a Comment