You know that someone leaving their front door open by accident is not an invitation or an excuse to enter and collect whatever you want, right? Especially when you're a complete and total piece of shit, some jail time is not an overreaction ( if it was a normal human being, leniency for a first offense is natural and to be expected).
As for Sony execs, if only that was the first case white collar crime was brushed off.
So by this logic, SQL injection is perfectly fine? RCE is perfectly acceptable too? After all, my machine is just asking for stuff and the other machine is responding in a way its code tells it to.
The open door analogy fits pretty well here, really. Just because you see an opening doesn’t mean you’re allowed in.
There was also that guy in another case sitting in his kitchen naked while drinking coffee and reading the morning paper. Some woman decides to walk into his back yard with her kid, sees him, and called the police on him for indecency...it took years for him to get let off and cost him a ton of money to not get any penalties. He was nearly held liable for what someone saw inside his house when they had to be trespassing to see it!
It also happens to be irrelevant to the case above, as it seems to have been specifically decided on the merits of the photographs as Art. It would be hard to claim that leaking the emails to Gawker was a form of art, so it may well have ended up differently.
And no, not selling that data doesn't make the act non-hostile. If company X possessing that data is hostile, why is Facebook/Google/AT&T/Microsoft having it any better? Because of their saint-like reputation?
[1] https://www.howtogeek.com/724472/do-isps-track-and-sell-your...
[2] https://www.cbsnews.com/news/facebook-gathers-texts-phone-da...
What weev did was more like set up a 3d scanning apparatus outside the window and create a perfect 3d scan of my entire house through the little opening in my blinds.
[ and just off-topic slightly, yes, I think RCE and SQL injection are perfectly fine. ]
With you so far...
>[ and just off-topic slightly, yes, I think RCE and SQL injection are perfectly fine. ]
WTF?! Seriously? There's a huge difference by tweaking the content in a query string of a URL vs injecting known malicious code/content.
RCE/SQLi, then contacting the relevant company to notify them about the problem, shouldn't be a crime. RCE/SQLi, then dumping all the data and exorting the company with it, should definitely be.
I definitely agree with you on this point. If someone looked in my window from the street and saw me eating breakfast, no harm no foul. If I didn't want them to see me I should have closed the blinds. But if someone sets up a camera at the exact same spot and streams it to twitch, I feel like I should have some recourse. (I don't think, legally, I would, but ianal).
Did I claim it was? I accurately described the e-mails as "accidentally accessible" (since I don't think what weev did rises to the level of "using an exploit"), and contrasted the severity of the act with what Sony did, and the severity of its consequences for consumers with what Google and others routinely do.
> Especially when you're a complete and total piece of shit
Then charge him with "being a piece of shit". But given Sony's, Google's, Microsoft's,... general behavior, he's not the only one that could be accused of that.
Both the internet and the laundromat go by "If it's publicly accessible, it's publicly available."
Everybody else needs to be made an example of.