Version: 2008

July 14, 2004 4:17 PM PDT

Pssst--wanna buy some source code?

  • 4 comments
A group of self-identified hackers has set up shop online to sell what it claims are files containing confidential software code--and it says it's ready to take orders for more.

The group, which calls itself the Source Code Club, is offering what seems to be the stolen source code for an older version of Enterasys Networks' Dragon intrusion detection system and Napster's client and server software. The price: $16,000 and $10,000, respectively.

As proof that it has the code, the group has put a listing of the files online. By using e-mail drops and encryption, the group believes that it can keep both the buyer's and its own identity secret.

"A company can feel safe doing business with us, because everything related to our clients is encrypted...(and) after a transaction with a client is completed, all encrypted records are destroyed," said a person identifying himself as Larry Hobbles, who responded to a message sent to the contact e-mail address on the Web site.

The Napster software appears to be related to the original file-sharing service, not the current legal music service, according to a statement from Roxio, which bought Napster's intellectual property.

Enterasys said it has contacted the FBI and is investigating the authenticity of the group's claims. While it did not confirm that the Source Code Club has the source code, the security company said it had analyzed the listing posted on the group Web site and concluded that, if the files have indeed been stolen, the theft did not entail an intrusion of its network.

"The continuing investigation indicates that any possible misappropriation of the code would have been linked to a physical theft of media and not a breach of the network," Enterasys said in a statement given to CNET News.com.

Moreover, the company pointed out that the listing on the Web site indicated that the Dragon source code was two generations old.

Enterasys and Roxio would not be the first companies to have the blueprints to their crown jewels leaked or stolen.

In May, Cisco Systems discovered that the source code that powers many of its networking products had been stolen and posted online.

Earlier in the year, a significant portion of the code making up Microsoft's Windows 2000 and Windows NT4 operating systems began circulating around the Internet. And last week, authorities charged a Microsoft programmer with stealing code from AltaVista after he left the search company but before he began working for the software giant.

The Source Code Club said in statements on its Web site that Enterasys' code is not the only programming up for sale: The group also takes orders.

"If you are requesting something from a Fortune 100 company, there is a good chance that we might already have it," the group said. "If we do not have what you are looking for already, we will consider getting the said data for you, for a price. This could take our team up to two months to complete."

The Source Code Club appears to be setting up for long-term business. Whenever law enforcement agencies shut down its Web site, the group will move to a new one, it said, and advertise on software security mailing lists. That could make it hard for authorities to shut the group's trading down, despite its high-profile flaunting of stolen code.

"Although there is a possibility that our site may go down, it will only be short term," the group stated. "SCC is here for the long haul and will re-emerge as necessary."

Add a Comment (Log in or register) (4 Comments)
  • prev
  • 1
  • next
Source code for $ale
by wahoospa July 14, 2004 6:45 PM PDT
I think we will see on CNET News.com, down the road,these people will be going to prison when they are caught doing this.And they will be caught!
Reply to this comment
Don't Care
by Stan Kee July 15, 2004 12:34 PM PDT
To hell with Corporate America. They have been giving ordinary Americans the shaft for too long. If the law won't hold them accountable when they screw us over then im fine with someone screwing them over. The government doesn't have any obligations to the American people -- We The Corporation. Pollute our Air, so be it. Make faulty products, so be it. Defraud the people, so be. Pay no taxes, so be it. Long as you keep making million and buy off the politians, so be it. But they will be the first to wave the American flag. To Hell With Them. Businesses come first and if the businesses don't mind we may come second. I can't go in the store to steal a candy bar but they can steal millions and may just get a slap on the wrist.
Reply to this comment
faulty products
by John Kuzak June 4, 2007 10:52 AM PDT
http://www.analogstereo.com/chrysler_prowler_owners_manual.htm
Why should anybody want this code?
by July 16, 2004 4:02 AM PDT
I wonder who would like to buy this code. If he
switched to Libre Software (Free Software), he
could get high-quality code for his application
for free with the freedom to share and modify
it.

Note: Please do not tell me the reasons one may
want to have access to source code of
closed-source apps, I know them :)
Reply to this comment
(4 Comments)
  • prev
  • 1
  • next
advertisement

Latest tech news headlines

RSS Feeds

Add headlines from CNET News to your homepage or feedreader.

More feeds available in our RSS feed index.

Markets

Market news, charts, SEC filings, and more

Related quotes

Dow Jones Industrials (0.20%) 20.63 10,328.89
S&P 500 (0.58%) 6.39 1,102.47
NASDAQ (1.45%) 31.64 2,211.69
CNET TECH (1.20%) 19.13 1,607.26
  Symbol Lookup
advertisement
Click Here

Inside CNET News

Scroll Left Scroll Right