[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y ] [Home]
4chanarchives logo
How much trouble can you get in for hacking into a school district's
Images are sometimes not shown due to bandwidth/network limitations. Refreshing the page usually helps.

You are currently reading a thread in /g/ - Technology

Thread replies: 78
Thread images: 5
File: Random_Fish_grossed_out.jpg (94 KB, 1152x864) Image search: [Google]
Random_Fish_grossed_out.jpg
94 KB, 1152x864
How much trouble can you get in for hacking into a school district's website and editing content?
>>
>>47631462
I'd say start training your asshole now.
>>
It can be classed as cyber terrorism. Enjoy prison.
>>
>>47631462
Also, everybody knows that the system administrators at high schools are extremely highly trained. They will find you.
>>
>>47631462
A week of detention young man

Your mother wont be happy about this
>>
If the school alerts authorities, and there's a good chance they would, your asshole will be reamed.
>>
>>47631462
You've already been backtraced. The cyber-police are on their way.
>>
A job with the nsa if you're black
>>
10 years in a pound-me-in-the-ass prison

enjoy!
>>
>>47631462
I think that's cyberterrorism now.
What is happening is that you're embarassing and spitting in the face of that school's IT department, so they go out of their way to get you arrested because fuck you.
>>
It depends. Are you inner city? IOW, are there real cops in the school 24/7?
The school can do absolutely jack shit unless they involve police. They're the only ones to worry about. But, the chances of the school catching you from a local machine on someone else's account are pretty slim assuming you aren't caught on cam. Try it out, don't make the school look bad and they most likely wont tear you too big of a new asshole.
>>
>>47631462
stop being a little bitch & just cover your tracks
>>
>>47631462
use some kinda ip mask so they wont know who did it
>>
>>47631462
ddczc
>>
File: OItnWGv.png (62 KB, 300x200) Image search: [Google]
OItnWGv.png
62 KB, 300x200
Holy fuck, OP.

Hacking shouldn't typically be done as a "le troloelele." When I was in HS the only thing I ever did was get the district wifi password and disable all forms of remote control on my issued computer...and I didn't boast about it during lunch, like you probably would(if you could ever do such a thing)
>>
It was an accident. Originally I was collecting massive security holes in the system but then I clicked the wrong thing. I did this from my home computer without being behind any sort of VPN.
How long until they find it was me?
>>
What can I do at this point? I'm really scared, I was trying to help but I feel it wouldn't be seen like that now.
>>
>>47631627
You're full of shit. Elaborate as well as you can and I will point out every flaw in your fake-ass story.
>>
>>47631462
A lot because school officials are fucking inhuman monsters. I had a lot of bad experiences with School and Technology. I've also got to look at the back-end of a lot of other schools and the way these "educators" act when a student does something like that is disgusting. I was reading through some internal emails once at a school when some kid did something to the schools site and even when the IT guy supposedly(quoted) said it was really no big deal some of these cock suckers were so upset over what he said they said they should fire the IT guy simply because he didn't want to give the poor kid a criminal record.

I've seen very similar things throughout many k-12 districts in the US.
>>
>>47631652
Was reading the memory of the main district server and hijacking sessions of other Staff members by stealing their cookies. Found out that the site was powered by a school orientated CMS and I was messing around in it when I accidentally posted an announcement thinking I was doing something else.
>>
You tell me.

http://arstechnica.com/security/2015/04/eighth-grader-charged-with-felony-for-shoulder-surfing-teachers-password/
>>
>>47631715
Is this for real? Do juvenile criminal records get expunged by 18 in the US like they do in Canada?
>>
>>47631715
this

OP is pretty fucked.

>not believing the "behind 7 proxies" maymay
>>
>>47631694
Remember when petty schoolyard bullying would get you suspended for a week at the most?

Now it's a criminal assault and battery charge.
>>
OP here, again. What can I do about it? I mean, at this point, how can I minimize damages. I don't want to destroy my future...
>>
>>47631744
When I was in grade 12 (~2005) a student in my grade was expelled for fighting with another student. Apparently, he broke one of his arms or someshit
>>
>>47631710
>district server
>cookies
>CMS
>accessible from outside the local network

I still call BS. What service were they using?
>>
>>47631770
You can stop making up shitty stories on 4chan.
>>
>>47631777
Are you retarded? School sites are some of the most vulnerable sites out there. In my teens I had to of hacked at least 30, some of which weren't just sites for one school but contained like 30-sub dirs for all the schools in the district. Get into the CMS then into the IT teams email and you're golden, all the network diagrams and password spreadsheets you could ever need.
>>
If you get caught, say you were trying to prevent malicious hackers from abusing the exploit:
https://en.wikipedia.org/wiki/White_hat_(computer_security)

Anyways, you should have used 7 proxies m8.
>>
None if you're not an idiot who gets caught.
>>
>>47631770
destroy your HDD and retain a good lawyer.
>>
>>47631777
https://www.schoolsuite.com/, I found the server while scanning my district's IP block

>>47631819
Agreed.
>>
>>47631603
You have to be 18 or older to be on this site.
>>
>>47631819
You must live in redneck county if you're talking about easy access into a (presumably) Microsoft CMS Server.

Every school in my area consists of potatos for IT, so the network is usually FAIRLY secure thanks to the third party management designed to keep the junior h4ck0rs out.
>>
>>47631819
There was a photo on /g/ of some guy who hacked his school's CMS and sent out the Stallman copypasta to everyone in the school.

OP, there was a kid in Tampa who is being charged with cybercrime for guessing his teacher's password and changing their desktop background.
I know people who have a criminal record because they did similar shit to what you described. The US is really fucking stupid about these kinds of laws, simple stuff gets charged as terrorism under the CFAA.
>>
>>47631652
Not OP, but I once deleted part of an URL on a whim and got access to their shitty admin interface for their shitty surveys.
>>
File: Lain.gif (320 KB, 500x357) Image search: [Google]
Lain.gif
320 KB, 500x357
This isn't hacking but I figured out a teacher's password and I edited his profile on my high school's website. They fixed it and had him change his password but I never got caught. I decided to check a few months later to see if he'd changed it back to the old password and he had. I then fucked with his profile again and some other pages on the site. They fixed it within a few days but still never caught me.
>>
First hand experience. I changed this site www.pvschools.net. it used to have a slideshow of stock images in a .swf file. meatspin is a swf so i switched it while the IT guy in the library was away in a meeting. the home page of the district was meatspin for a week.
i was never caught OP but I did it 2 days before i graduated, so if you do it, do it at the last second
>>
>>47631878 >>47631860

JFC, confirmed. Redneck county if they're using schoolsuite, or some other form of ANCIENT third party, unprotected CMS. Trust me, they probably won't end up going ham on you. In fact, they'll probably assume it was a glitch and won't try to trace it back.


But then again....what did you announce?
>>
>>47631603
>use some kinda ip mask so they wont know who did it

Don't worry, my computer is setup to use 255,255,255,000 different masks. With over 2.5 trillion masks they should never find me.
>>
>>47631462
At least you didn't replace the desktop background with gay imagery.
>>
>>47631878
Nope, if the main site is some run-of the mill CMS with likely no easy ins like SQLI go for the sub-domains get the ITs creds from there and then try them on other logins like email etc. There is almost always a huge attack surface and I've never had issues getting into schools from in the middle of nowhere to highly populated areas.
>>
well to be honest, if there was any access to school reocrds from off campus they're probably not connected to the website at all.

assuming you didn't do anything like>>47631819 you should get off with a misdemeanor at worst.

I mean, maybe. I'm not a lawyer.
>>
>>47631922
>
The lyrics to the iCarly theme song. It was an accident in a sense that I didn't mean to post it, it was in my clipboard and I pasted it into the announcement box and hit enter without really thinking it through.
>>
>>47631942
School grades, records, and mail are all on their own respective servers. I did not touch those or even gain access to them.
>>
>>47631942
If you just use tor you'll be fine, I've even did some .gov stuff that made the news and they always just said retarded stuff about an "international" hacker, and they're having ICE look into it etc. As long as you're not retarded you'll never get caught.
>>
Just walk away OP. I did some stupid shit in high school and got fucked by the police.

>be 14
>browsing through school computers
>see a network drive and click through a rabbit hole of links
>find an administrative folder filled with dumb shit (blank forms, lists of students, letters, etc)
>copy to flash drive
>give copies of files to a friend on his iPod
>he shows off some kid some porn on his iPod, gets ratted out and school finds the files
>they find me, call police

Due to the fact that the school network was so valuable, I was charged with "unauthorized access of computer information system: value >$10,000" which is a felony, plus a bunch of lesser misdemeanors. They dropped the lesser ones but kept the felony charge and and I became a convicted felon at 14 years old. Had to do probation, community service, and pay back $1,500 to the school. Fuck that school and the police, a detention would have sufficed.

>tfw all expunged now
>>
>>47631954
NIGGER YOU WHAT?
>>
>>47631954
Why would you do this?
>>
>>47631986
I was also charged with that before, good times.

>tfw expunged
>>
>>47631976
Tor can't boot up on most school computers, it'll just freeze while loading. I speak from countless attempts.
>>
>>47632013
>hacking them from their own LAN

You're retarded, I'm talking about doing it remotely.
>>
>>47632035
Yes, let me sneak in a router and a laptop and hide in the janitor's closet.
>>
File: 2055-ohlawd.jpg (22 KB, 390x299) Image search: [Google]
2055-ohlawd.jpg
22 KB, 390x299
>>47631954
>>
>>47632056
Moving from a webserver into their LAN is easy as pie, no need for such excessive effort. If you wanted insta LAN though you could of course do this with a raspberrypi easily.
>>
>>47632056
that's still not remote.
>>
If I get called to the office or they figure out its me, what should I do? I'm just freaking out and I need peace of mind. Reading this shit online my future could be over.
>>
>>47632120
Say literally nothing, anything you say will completely fuck you over and limit your later options should you need to defend yourself in court. Do/Say nothing until you consult a lawyer if you have to.
>>
>>47632120
Just fucking tell them everything, explain absolutely everything you've done. If you lie you WILL get your shit kicked in. It's scary and has happened to a lot of people, you'll get through it. Make sure you tell them how the things worked and get bonus points by telling them how to prevent it.
>>
>>47632120
the freaking out is probably a bad idea.

keep your mouth shut, say nothing. at all. and don't look like you know what they're talking about.
>>
>>47632143
Okay. This is good advice. But that could make me look even more guilty?
>>
>>47632180
Yes, it would. Play the good guy and you might get lucky like me, I got my felon charges dropped before I even entered the room.
>>
>>47632120
Get yourself behind Tor. You can proxy applications through it that don't support proxies directly with tsocks, or Proxifier if you're a Wingblows fag.
>>
>>47632180
saying nothing says nothing. saying anything does.
>>
>>47632180
That isn't how the law works, some tard being suspcious isn't beyond reasonable doubt. Every lawyer will advise you to do the same thing I said.
>>
>>47632195
fuck off dress wearing kike
>>
>>47632199
>>47632180
that is to say, only tell the truth, but don't offer anything up.

>>47632204
suspiscion leads to pressure.
>>
File: image.jpg (24 KB, 438x405) Image search: [Google]
image.jpg
24 KB, 438x405
>>47631954
>Sides.exe was successfully uninstalled
>>
>>47631622
>get the district wifi password and disable all forms of remote control on my issued computer

Are you me? Except I sold the password to individuals until some fag had root on his phone and checked the entered passwords.
>>
>>47632222
Then just walk out, if you're feeling pressured. Know your rights, the school can't force you to stay anywhere. They and law enforcement will pretend to be trying to help you/are on your side so you'll give them an instant win in court by spilling your guts. Say nothing, do nothing and get a lawyer. End of story, if you're dumb enough to not be able to follow these instructions you deserve whatever you get.
>>
>>47632254
if you want to keep going to school there, you need to talk to them.

that said, the phrase "why do you thik this is me" would be rather important.

on toher news, this thread is still up.
>>
>>47632313
it's only been up for 54 minutes, or is OP break the roolz?
>>
>>47632354
a little.

but yeah, calm your tits because everything will be fine.
>>
Well, this has been good advice. I'm just going to try to keep it cool until I'm called down. I don't want to tell a lie and damage my integrity so I'll just offer as little information as possible as suggested and if possible lawyer up. I'm rooting that they weren't logging individual requests and they won't have any solid evidence I did anything at all.
>>
I'm also concerned because my Computer Science teacher knows I've found vulnerabilities in some in-house school systems and exploited them in the past. If he's brought to attention about what happened, and he very well might be because he's developed some of the school systems, he might think I had something to do with it.
>>
>>47631777
Nah, I found this on my school district's website once. They use shitty CMSes and leave everything publicly available, probably as b8.
>>
>>47631537
what if he is a genderfluid cyberpunk?
Thread replies: 78
Thread images: 5

banner
banner
[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y] [Home]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
If a post contains personal/copyrighted/illegal content you can contact me at [email protected] with that post and thread number and it will be removed as soon as possible.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com, send takedown notices to them.
This is a 4chan archive - all of the content originated from them. If you need IP information for a Poster - you need to contact them. This website shows only archived content.