Mitnick's autobiography is coming out in August. I've been reading a prerelease copy, and it's really enjoyable (if you are into that sort of thing). Lots of details and stories about the things he was up to.
I was roaming around inside networks and machines around the same time as these guys and I don't think it was a romantic era, but it was an era in which the laws were very lax and you'd likely get a slap on the wrist rather than a jail sentence. Lots of systems were open, anonymous FTP was the norm, and it was trivial to spoof email using SMTP commands typed through telnet since the SMTP servers trusted whoever connected to them. Also many dial up systems used either no security (i.e. if you knew the number it was enough to get in), or really trivial passwords. Networks were easy to monitor once you were in and most passwords were sent plain text (the assumption was that you couldn't see the X.25 or TCP packets themselves, but, of course, you could).
I remember on one occasion receiving an email from a system administrator in a university where I had changed the 'ls' program to be a trojan of my own design. His email just said: "I have removed the new 'ls' program you installed on $SYSTEM_NAME." All it did was log the name of any user who had visited my $HOME so I could see who was looking in my files. Today, I would likely be on my way to prison.
The other thing that's become very real in the hacking world is the amount of money that's flowing around. You can get paid for exploits, paid for stolen information, paid for botnets, paid for viruses, etc. etc. If there was anything romantic about the 1980s it was that it was mostly being done for fun and without malicious intent.
I was roaming around inside networks and machines around the same time as these guys and I don't think it was a romantic era, but it was an era in which the laws were very lax and you'd likely get a slap on the wrist rather than a jail sentence. Lots of systems were open, anonymous FTP was the norm, and it was trivial to spoof email using SMTP commands typed through telnet since the SMTP servers trusted whoever connected to them. Also many dial up systems used either no security (i.e. if you knew the number it was enough to get in), or really trivial passwords. Networks were easy to monitor once you were in and most passwords were sent plain text (the assumption was that you couldn't see the X.25 or TCP packets themselves, but, of course, you could).
I remember on one occasion receiving an email from a system administrator in a university where I had changed the 'ls' program to be a trojan of my own design. His email just said: "I have removed the new 'ls' program you installed on $SYSTEM_NAME." All it did was log the name of any user who had visited my $HOME so I could see who was looking in my files. Today, I would likely be on my way to prison.
The other thing that's become very real in the hacking world is the amount of money that's flowing around. You can get paid for exploits, paid for stolen information, paid for botnets, paid for viruses, etc. etc. If there was anything romantic about the 1980s it was that it was mostly being done for fun and without malicious intent.
http://www.amazon.com/Ghost-Wires-Adventures-Worlds-Wanted/d...