Cisco, ISS, Michael Lynn and Black Hat sign legal accord - Network World

Skip Links

DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Security

Videos

rssRss Feed
Get instant email notification when white papers, webcasts, executive guides are added to our library.  Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.
Audio

Hacker writes Cisco rootkit; Microsoft launches online telescope. Listen now!

Network World 360

Wireless dangers at airports. Listen now!

Network World Panorama

Additional Resources

RSS

FEATURED REPORTS

Executive Guide: Storage Heats Up HP

Get the latest on storage technologies that allow IT professionals to better cope with new IT demands. Learn how storage technologies can help you successfully tackle e-Discover, regulatory compliance, green data center initiatives and the data explosion. Get all the details now.

RSS

FEATURED WEBCASTS

Get Real-world Advice on how to Cost Effectively Consolidate your Data Center Novell

Discover the benefits of paravirtualization in this informative webcast today. This server virtualization-themed webcast not only explores how to improve virtualized server performance, but provides real-world user examples, explains how to optimize workloads and discusses the future of server virtualization. Focus on only the themes that interest you or watch all six consecutively for a full picture of how you can lower your costs significantly through consolidation and virtualization. Register below to learn more and be entered to win an Archos 605 Portable Media Player.

IT Buyer's Guides

View All Buyer's Guides

Free Newsletters

Sign up and receive the latest news, reviews and trends on your favorite technology topics

Save The Date!
What They Are Saying

I'm an American, and my government-funded schools taught me that government censorship is bad! It's...- Ben

Join the Discussion

Cisco, ISS, Michael Lynn and Black Hat sign legal accord

By Ellen Messmer , NetworkWorld.com , 07/28/2005
  • Social Web 
  • Email 
  • Feedback 
  • Close

The dispute between Cisco, Internet Security Systems, the Black Hat conference and a former ISS security expert - who Wednesday at the show revealed information related to hacking Cisco routers - reached a point of legal settlement Thursday.


More: Cisco nixes conference session on hacking IOS router code
Furor over Cisco IOS router exploit erupts at Black Hat
Researcher at center of Cisco router-exploit controversy speaks out
Forum: Who's right?


Michael Lynn, who had hired high-tech defense lawyer Jennifer Grannick as his attorney as he faced legal action Wednesday from his former employer ISS and Cisco, Thursday agreed to sign a court injunction. The injunction requires him to return any materials or disassembled code related to Cisco and never to discuss the materials related to the presentation he gave at the Black Hat conference on July 27.

That talk, which he gave in spite of a prohibition from ISS, and after a request by Cisco for it to be canceled on Monday, pulled him into a legal whirlwind. Cisco and ISS on Monday decided it was premature to release sensitive information related to how unpatched Cisco routers can be hacked and were furious when the main researcher who had uncovered the exploits defiantly spoke out on the topic.

The agreement, signed by all parties, also requires Black Hat to never disseminate a video made of Lynn’s presentation on July 27 and to deliver to Cisco any video recording made of Lynn.

According to the injunction Lynn is also forbidden from “unlawfully disassembling or reverse engineering Cisco code in the future… [and] using Cisco decompiled code currently in his possession or control for any purpose.”

These restrictions raise the issues of when security research crosses the line from the side of altruistic or responsible hacking to breaking the law, experts say.

“Reverse engineering on its own is legally OK,” says Lee Bromberg, senior partner for Bromberg & Sunstein, a Boston law firm specializing in electronic intellectual property litigation. But there are several exceptions. “If in doing this, you violate a patent, you’re still violating a patent. If you are violating a copyright, you’re violating a copyright,” he says.

1 | 2 |  Next >
Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to moderator approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.
First Name
Last Name
E-mail
Zip Code