Student jailed for hacking Facebook

Powered by SC Magazine
 

Not just 'harmless experimentation'.

A British student has been jailed for eight months for hacking Facebook in what was described by the presiding judge as the “most extensive and grave” case of its kind.

Glenn Mangham, 26, hacked the social media website last year from his parent’s basement, The Guardian reported.  

Prosecutor Sandip Patel said Mangham stole “invaluable” intellectual property after hacking the account of a Facebook employee who was on holiday.

Mangham, a software development student, said he intended to demonstrate the hack to Facebook to help it improve security.

“It was to identify vulnerabilities in the system so I could compile a report that I could then bundle over to Facebook and show them what was wrong with their system," Mangham told the court.

Between April and May last year, the court heard Mangham hacked a Facebook puzzle server used by programmers, and a mailman server used to handle email distribution lists.

Prosecutors said he also crafted and offered to distribute a script used to hack the Phabricator server which housed application development tools.

Patel said Mangham downloaded internal Facebook data to an external hard drive.

Scotland Yard raided Mangham's home on June 2 last year in what was described as a "concerted, time-consuming and costly investigation".

Mangham first appeared in court in August 2011.

Patel said Mangham “acted with determination and undoubted ingenuity”, describing the hack as “sophisticated” and “calculating”.

“This represents the most extensive and grave incident of social media hacking to be brought before the British courts," he said.

Mangham’s defence said he was an ethical hacker who saw the hack as a “challenge”.

"It was common currency within the community of computer nerds or geeks, if I may refer to him as that, where there was this interesting relationship between companies and people who ethically point out vulnerabilities," defence lawyers argued.

Facebook operates a bug bounty program in which it pays ethical hackers up to $US500 ($A467) for quietly disclosing vulnerabilities.

The Guardian reported Mangham had previously shown Yahoo how to improve the security of its search engine.

Judge McCreath said he considered that Mangham had not previously been in trouble and his "psychological and personal make-up".

"But this was not just a bit of harmless experimentation. You accessed the very heart of the system of an international business of massive size, so this was not just fiddling about in the business records of some tiny business of no great importance," McCreath said.

Copyright © SC Magazine, Australia


Student jailed for hacking Facebook
 
 
 
Top Stories
iiNet facing new copyright battle with Hollywood
Fighting to protect customer details.
 
The CISO’s dilemma: Do you trust your partner’s partner?
[Blog post] How far down the chain do you check?
 
Microsoft confirms Australian Azure launch
Available from next week.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
In which area is your IT shop hiring the most staff?




   |   View results
IT security and risk
  25%
 
Sourcing and strategy
  12%
 
IT infrastructure (servers, storage, networking)
  22%
 
End user computing (desktops, mobiles, apps)
  15%
 
Software development
  26%
TOTAL VOTES: 303

Vote
Would your InfoSec team be prepared to share threat data with the Australian Government?

   |   View results
Yes
  59%
 
No
  41%
TOTAL VOTES: 114

Vote