Most of the computer compromises that we hear about use a technique called spear phishing, which allows an attacker access to a key person's workstation. It's extremely difficult to defend against. Kevin Mitnick accessattackercall Change image and share on social
If I needed to know about a security exploit, I preferred to get the information by accessing the companies' security teams' files, rather than poring over lines of code to find it on my own. It's just more efficient. Kevin Mitnick accesscodecompany share on social
I get hired by companies to hack into their systems and break into their physical facilities to find security holes. Our success rate is 100%; we've always found a hole. Kevin Mitnick breakcompanyfacility Change image and share on social
I was addicted to hacking, more for the intellectual challenge, the curiosity, the seduction of adventure; not for stealing, or causing damage or writing computer viruses. Kevin Mitnick addictadventurecause Change image and share on social
Think about it: if you were running a multi-million dollar company, and your database of customer information was stolen, would you want to tell your clients? No. Most companies did not until the laws required them to. It's in the best interest of organisations - when they're attacked and information is stolen - to tell nobody. Kevin Mitnick attackclientcompany share on social
Not being allowed to use the Internet is kind of like not being allowed to use a telephone. Kevin Mitnick allowinternetkind Change image and share on social
I don't condone anyone causing damage in my name, or doing anything malicious in support of my plight. There are more productive ways to help me. As a hacker myself, I never intentionally damaged anything. Kevin Mitnick causecondonedamage share on social
I don't know of any case that involves computer hacking where there were multiple defendants charged where there wasn't an informant on the case. Kevin Mitnick casechargecomputer Change image and share on social
One of my all-time favorite pranks was gaining unauthorized access to the telephone switch and changing the class of service of a fellow phone phreak. When he'd attempt to make a call from home, he'd get a message telling him to deposit a dime, because the telephone company switch received input that indicated he was calling from a pay phone. Kevin Mitnick accessattemptcall share on social
The best thing to do is always keep randomly generated passwords everywhere and use a password tool to manage it, and then you don't have to remember those passwords at all, just the master password that unlocks the database. Kevin Mitnick databasegeneratemanage share on social