Man Arrested for Using Open Wireless Network
DaCool42 writes "In Tampa Bay, a man has been arrested for using a wide open WiFi AP. The St. Petersburg Times has the full story. 'It's no different if I went out and bought a Microsoft program and started sharing it with everyone in my apartment. It's theft,' said Kena Lewis, spokeswoman for Bright House Networks in Orlando."
Also, the poor guy admitted to using the connection too (unauthorized access to a computer network, which is a third degree felony according to the article). Now, if he would have just asked for a lawyer and then shut up, he probably would have gotten off with just a warning.
Slashdot = ((Technology + Politics) / Trolls) % Grammar Nazis
I dunno... I think a more appropriate analogy would be if one installed a huge arse window in the front of your house, then stuck a giant plasma TV in it and getting annoyed and frustrated when people stopped by and watched TV through you window.
It's not a perfect analogy, but it's much better than the 'It's no different if I went out and bought a Microsoft program and started sharing it with everyone in my apartment. It's theft' argument.
I dont want to bang on the "the guy had it coming" drum, but Dinon admitted he KNEW how to secure his wifi but declined because most of the people in his neighborhood are "older". That suggests to me, at least on this topic, that he wasn't acting like the sharpest knife in the drawer. But still, it's more than a little unsettling to have some 40-something guy sitting outside your house using your resources. While the article doesn't say he was a perv, I wouldn't be a bit surprised if he was -- and pulling kiddie porn or somesuch.
How was the guy supposed to know that he didn't intend for the AP to be open to everyone.
AP makers should force, once the device is connected for the first time, for it to go to a config page which outlines all the security settings (WEP, etc.)..... maybe then some people will start to understand security.
There's no place like localhost
If microsoft left xp disks at street corners unattended complete with legal cororate serial numbers would they be surprised if people were using them? Same idiocy here. Leave a network open and someone's going to get in. If you're lucky it's just for free internet.
"It's no different if I went out and bought a Microsoft program and started sharing it with everyone in my apartment. It's theft."
No it isn't. It's not even a copyright problem. What, now I need an extra license if somebody's visiting and they want to check their mail?
It remains unclear what Smith was using the Wi-Fi for, to surf, play online video games, send e-mail to his grandmother...
Don't let that stop you from closing out the article with wild speculation though.
"I'm mainly worried about what the guy may have uploaded or downloaded, like kiddie porn," Dinon said.
Haida Manga
... I shouldn't expect to be robbed, or for someone to come in and watch my TV and drink my beer any time they like.
The cost of them watching my TV and drinking my beer might be minimal, but that's not the point. It's my TV and my beer.
This is the reason people lock their doors and close their windows. We shouldn't need to worry about people coming into our homes, but we do. These people need to learn to secure their wireless points.
I am in no way justifying what this guy did, but hopefully it will highlight something to Joe Average and get them to lock their AP's down tighter (or in most cases, lock them down at all).
On noting the open point, this guy should have at least tried to locate its owner and let them know about it, maybe even offer to help them fix the problem. Instead he took advantage for his own gain, just like any petty theft act really.
If you actually read the article you'll see that he was sitting outside someone's house in his SUV using his laptop. That is quite different from simply tacking onto your neighbor's network, he was outside the house sitting there for the sole purpose of leeching off his internet connection. While the Microsoft analogy is a bit stiff, at least read the article before you all go crazy.
and i supose if you go and drink water from a public fountatin i should be arrested too for the fact the water is open to the public and not locked down. Sounds like they dont want to take fault for not fencing up a public oasis in the middle of no where because you know if it isnt yours its owned already by some one else more powerful and richer then you. Also what if the wifi is a public wifi by choice for the people to use? is it still stealing then?
"to be like god we make our own dolls to play with, but what does that make us, but dolls for god to play with?" Ikari,
I always thought stuff like this was a little weird.
It is like a radio station only allowing members to listen to their station, but broadcasting to everyone and saying if someone who isn't a member listens in, they are breaking the law. Either set up your shit so only authorized people can access it, or don't and not be permitted to have unauthorized people arrested for using it.
"you sonofabitch i didn't know!"
Ok, the headline should read "Man Arrested While Using Open Wireless Network." He was arrested because he had been sitting in front of a guys house all day in his suv on his computer. Whenever he was approached he would shut his notebook and look suspicious. After a few hours of the nonsense the police were called.
The rest of the article is standard "open wireless is for kiddie porn and a gateway to identity theft" FUD. Of course, most people just use it to download music for free, but the warnings of consequences for the owner of the network are legit. If your network is used in-appropriatly, you ARE responsible.
Turn on encryption, add a password, add mac based filtering, turn off dhcp and you are pretty much set.
There is nothing wrong with being gay. It's getting caught where the trouble lies.
Even though it was an unsecured network, he was still stealing network bandwidth & accessing something he shouldn't be, its fair that he was caught & should be punished for it.
No. You do forget that we are discussing radio technology. The AP actually broadcasts an invitation beacon for wifi client devices to join the network. It is like having someone put up a big pile of things on a table, stand by it shouting "Here take some" and then calling cops if you do.
If you still have doubts, ponder this educational question: How can you tell a difference between a "public" open AP and one opened by mistake, while trying to browse the web from your laptop on a park bench downtown?
A: Unless the ESSID is "SEKRIT!" or "DONT_YOU_DARE!" you can't.
QED.
I wonder how long before we see a suit where a customer sues a manufacturer for not making security clear & easy enough to set up when they purchased & installed a router.
This is in fact a much wiser course of action. The wireless gear should come with maximum security on by default and require multiple prompts to lower the protection level. But blaming the "nefarious" "hacker" is far more sexy and easier for brain-dead prosecutors then going against a large multinational.
Then if the gear is left wide open, no idiot can claim "I didn't mean to do this, honest!". Otherwise (and from the vague statements of the "victim" in this case a likely scenario) it is simply an entrapment, vigilante excercise, a.k.a leaving a wallet on a sidewalk and then shooting anyone who tries to pick it up for "attempted roberry".
That is, piggybacking off someone else's wireless in the building. I told them it was not a good idea due to security and legal concerns, among other things, exactly like the article says.
How do you know what's coming over that Internet line you're piggybacking on? Okay, so it's not going to your MAC address based on your initiated connections, but how do you know what kind of worm or virus is running on that guy's machine - and what it's scanning for in terms of local connections? It's just dumb to piggyback unless you have a really secure setup, and if you know that much, why don't you have your own wireless?
It's also possible to find out who is piggybacking once it is noticed because all you need is a laptop with NetStumbler and walk around until you get a signal from a laptop and capture the MAC address. Then just knock on the door (if you're the building manager) and demand to see the computer - if the MAC matches, it's over. This is bad news for people who are in buildings that charge for wireless access. Fortunately for them, most of the management and other tenants probably aren't that knowledgeable.
As for this guy in the article, he was obviously stupid to hang out right in front of the victim's house, and then CONTINUE to hang around even once the victim had spotted him. Guy must have been desperate for that connection for some reason, which probably means it was something illegal he couldn't afford to be seen doing at the local Starbucks.
On the other side, I can't understand what the victim meant by not having security because other residents "were older". Was he sharing with the other residents in his neighborhood? If so, then wasn't HE screwing the service provider? Did I miss something here? If it's stealing to share an open wireless access point without someone's knowledge, then it's stealing to share one WITH someone's knowledge. I don't think the terms of use of most commercial providers allow for sharing access to anyone except perhaps ones immediate family at one location (unless of course it is a building-wide access point that is paid for by the building - which doesn't apply in this case because Dinon's is a residential home.)
So it seems like this guy got arrested for accessing an individual's network while the individual involved was sharing it with his neighbors probably in violation of his Terms of Use contract.
Richard Steven Hack - This sig is TOO GODDAMN SHORT TO DO ANYTHING USEFUL WITH! MORONS!
You could be arrested if your neighbor happens to also have a wireless network and your computer decides it likes that one better one day. That's egregious.
That's a valid excuse? What happens if someone younger moves into the neighborhood? Do you enable encryption then? What if their grandchildren come for a visit and put your system into scriptkiddy hell? Do you enable it then?
At what point does common sense outweigh laziness for this jackass?
Moof!
This seems to be similar to "attractive nuisance" violations: If a homeowner sets up a trampoline in his front yard he must also put a fence around it. Otherwise, he cannot complain about trespassers when all the neighborhood kids start jumping on it. Furthermore, without the fence the homeowner can (and has been successfully) be sued for negligence when one of those kids breaks his neck.
I have some mod points this week, and I was all set to mod a few comments in this thread. Then I saw this post, and decided I'd rather reply in the thread than mod.
The reason the guy didn't confront the other dude in the SUV is simple...people very often get shot/stabbed and killed for doing so. It happens on a regular basis in the US. There are a lot of mean and nasty motherfuckers roaming here.
I am not a small man. I'm 6 foot tall and weigh 300 pounds. But if I saw a guy I didn't know sitting in front of my house late at night doing something possibly naughty, my first instinct would also be to call The Law. The only way I would walk up to that vehicle myself would be with loaded shotgun in hand.
The man who called the law was not a coward. He was very very smart.
I want a new quote. One that won't spill. One that don't cost too much. Or come in a pill.
Ok lets just say for arguments sake that he wanders with his laptop to the opposite side of his house, far away from his own wireless access point. The computer sees the other access point has a stronger signal and latches on to it during a break in communication with his own access point. He is unaware of the change and continues with his business. Are the default settings for wireless access communication illegal? What would stop someone from plugging in a wireless access point boosting the signal strength and calling the police any time someone accidentally connects? I live in an apartment complex with about 7 other visible access points. I occasionally get bored and plug in a spare access point with no internet connection attached to see who accidentally locks on to me and loses their internet access.
It is about the fact that the guy was a fucking creep.
Seriously- if he REALLY thought what he was doing was OK, why did he act all cagy and close the laptop/drive away every time the homeowner saw him?
WiFi or not, this guy was acting strange in front of someone's home in such a way that I think it would probably freak most people out. The cops used the WiFi excuse just to bust the guy and I say jolly good show on them. I would feel very diferently if the guy simply said to the homeowner who he was and the fact that he was surfing on his net connection, but he didn't.
Since, in general, a homeowner is neither an officer of the law nor an agent of the government, the prerequisites of entrapment are not fulfilled.
-Tez
Haskell, the static-typed, lazy, polymorphic, programming language.
Your post reminded me of a good Dvorak commentary that came out about a year or so ago. -- Usurper_ii
http://www.pcmag.com/article2/0,1759,1565274,00.as p
By John C. Dvorak
To drive around looking for connections to open wireless access points is called wardriving. In Canada, people who are caught doing this can be arrested for stealing bandwidth. The legality of this practice in the U.S., however, is a bit hazy, and there are many mitigating factors. One is that several organizations deliberately leave access points unencrypted so that people can use them as necessary. Also, many computers with built-in wireless simply grab the first signal they detect. Then there's the trespassing issue: The wardriver isn't trespassing on the router, the router is trespassing on the wardriver's airspace.
Free Access
This issue was brought home to me recently when one of my laptops told me it was ready to install new Windows XP upgrades, even though the laptop was not on a network and my wireless access point was off-line. I discovered that a neighbor's wireless router, named "default," had provided the access. Using my Toshiba's View Wireless Connections option, I saw five nearby networks that I could grab, three of which were unencrypted. Obviously there's plenty of free access around for harried travelers. It seems to me that being able to download your e-mail at an open connection is a good thing.
Look into the legality of this, though, and you hear vague comments like "The FBI doesn't know how legal it is" or "It may be illegal, because you're using someone else's connection or you're spying on their network." This issue will create ridiculous legal problems, which is bad news for both consumers and law enforcement, unless a sensible, national policy can be developed.
Personal and Corporate Responsibility
Let me jump in and propose a simple, logical public policy. Law enforcement doesn't need to get involved whenever some guy in a doughnut shop poaches a nearby Wi-Fi connection to check his e-mail, thinking he's on the shop's network. This shouldn't be a crime, even if he's intentionally poaching. We must put the burden of responsibility on the broadcaster, not the end user. It has to be made clear that people sending open connections all over town should be responsible for them.
Here's what I propose: Once a wireless signal leaves private property, it becomes public domain. If the person transmitting the signal wants it protected, then encryption is up to him or her. If someone beams an Internet connection into my home and I happen to lock onto the signal, he is trespassing on me, not the other way around. Public policy must reflect this logic. Keep it out of my house if you don't want me using it. Keep it out of my car. Keep it away from me in public places.
The Public Interest
This policy makes sense because it lets anyone who wants to provide open access do so without hassle or fear. Groups in San Francisco and Seattle are openly promoting free 802.11 connectivity. Many coffee shops, restaurants, and community groups now provide free wireless access, and directories of these hot spots are easy to find online.
This ubiquity of access is to be encouraged as in the public interest. But it can't happen if the law doesn't make the person transmitting the 802.11 signal responsible, instead of blaming any roaming users who are simply grabbing open connections. If this means that a corporate network is wide open to hackers, because the company doesn't bother encrypting the signal it broadcasts all over town, then so be it.
We must not follow the Canadian model that views using unprotected 802.11 connections as bandwidth theft. My computer grabs wireless signals impinging on my house more often than it grabs my own 802.11 connection. It just does. Agencies shouldn't be required to sort this out; it would be a law enforcement nightmare. In fact, it's
Ron Paul
The analogy is false, though, because you're broadcasting your property... All of your analogies imply clear boundary conditions, such as property edges, doors, using someone else's computer, etc. But if you put up an unsecured wireless network which you setup of sufficient strength to permeate your neighbor's property, the boundaries are very different.
If you have a wireless stereo system, which broadcasts to your speakers, and your neighbor picks it up, it's not "stealing" your music if they listen. If you want to share photos with your family and you put up an unsecured internet site, it's not stealing if non-family members visit and download your photos.
The fact of the matter is you've setup a broadcasting network through a section of your neighborhood. Congratulations, you're now a broadcaster. All operating systems will automatically connect with your network (...maybe not BSD). If you had a problem with this, you can very simply turn on WEP.
Which is how the internet works. Everything is assumed public until you put on the slightest bit of security. That's the convention. If you visit a website and they don't authenticate, it's assumed public. If someone sends you a link to a streaming movie and it doesn't ask for a password, it's assumed public. By practical definitions, it is public. We're not talking about bolting on an iron-clad Novell authentication system, we're talking about changing one preference in your network configuration settings.
You bought a piece of land next to a public field, and you didn't put up a fence or any demarkations. People will wander into and out of the field as if it were part of the commons. There is no practical way to ask whose field / network it is, nor any reason to see to ask. By not marking it as private, you have used the conventional method of marking it as public.
Would someone make their network public? Lots of people do it intentionally. In my apartment, I generally see no fewer than 10 or so wireless networks. Of those, half or so are unsecured. There's usually one or two that has the default router name (Linksys, etc). But most have changed their name to something else, which means that the people involved knew enough to go through the setup process and decided to leave their network open to everyone. Why? Mostly it's a desire to share and be neighborly. Oddly enough, the ISP up the street does the same thing. Lots of the businesses have open wireless access in an attempt to get people to come in with their laptops and drink coffee while doing work.
Of course, there are tradeoffs involved all around. Your wireless network is fucking up my other wireless equipment and using the available spectrum in my house. My wireless phones and other devices are using the same unlicensed spectrum, but are now competing with your bloody web surfing to be heard. I accept that you're going to have a wireless network, because those things are useful. And if you decide not to secure it and make it public, it's on me (and all of the other users) to be good citizens and not saturate your upstream by sharing on P2P apps all the time, or queueing up weeks worth of downloads. If you do decide to secure your network, it's neighborly of us to respect those boundaries and not packet hack it, despite WEP's inherent vulnerabilities. It's also neighborly to broadcast your SSID and channel, because in high density areas the difficulties involved in keeping people's networks from stepping on eachother is far greater than the minimal security provided by not broadcasting your SSID.
You marked your network as public, and now you're complaining that it's not private. Fine. Flip the fucking switch so that we know that it's private.
The ______ Agenda
Caveat: This article is merely the results of my research, so please keep in mind that I am not a lawyer and am not qualified or licensed to disburse legal advice. Corrections to this information are welcomed and desired.
My research would indicate that accessing an open (that is unencrypted) 802.11b/802.11g wireless network is not a federal crime. However, individual states may have enacted their own laws.
According to Title 18 (Crimes and criminal procedure) of the United States Code, Part I (Crimes), Chapter 119 (Wire and electronic communications interception and interception of oral communications) from usdoj.gov:
I do not believe that Title 18 (Crimes and criminal procedure) of the United States Code, Part I (Crimes), Chapter 47 (Fraud and false statements) Section 1030 (Fraud and related activity in connection with computers) from usdoj.gov applies:
Whether or not this would apply would depend on the definition of the term "protected computer". An open netwo
That's a terrible metaphor. You know how I first discovered what turned into war driving? My friend and I were at an OS X demo. When it was over we went out to his car, he opened his powerbook to make some notes, and "OMG, what's this?? I'm online??" It was a complete ACCIDENT. If my Grandmother can accidentally stumble onto her neighbor's "illegally shared" internet then there is something seriously wrong.
It's not like walking into somebody's house, it's more like opening your bedroom window so you can listen to your neighbor's XM radio. You're not paying for that XM... you're stealing by listening to it without your neighbor knowing. Sure, you can't change the channel just like you can't reconfigure their router settings, but you ARE leeching.... whatever. It's absurd. It's asinine. It's not stealing if people are offering it, let alone broadcasting it out with an SSID beacon, and it shouldnt' be illegal if Apple and Microsoft are setting us up for these "illegal" activities by making their OS auto-connect to open networks. Am I the only one who's found himself accidentally using his neighbors signal instead of his own? It's not stealing if I go to my friends house to watch DVD's he rented or bought. It's not stealing when I flip through the channels on his TV even when he's not home. I do agree that saturating your neighbor's pipe is out of line, and using it without their knowledge might be a bit shady, but illegal? That's ridiculous. If they don't want you on their net then they should turn on WEP. If the internet companies don't want you sharing your pipe then they should charge by megabyte.
Two things in the transaction could be percieved as "permission". Firstly, the access point is (presumably) periodically advertising itself to the world, inviting any nearby computers to connect. Some computers will do this automatically without prompting, as mine did when I turned it on in my new office the other day and it discovered the access point in the office next door. Secondly, once the computer had associated with the access point it sent a DHCP request onto the network. Think of this as walking up to someone's open door and yelling "Can I come in?". The DHCP server then responded "Sure, you can come in and sit in this seat!" (you can use this IP address). This is also often done unattended by a computer once it has completed the previous step.
Not only, then, is the wireless network sending out periodical invitations to everyone, but when they respond it is helping them to get connected. This guy might be able to claim "hacking" if neither of these were true, but I think in this case it's clear to me that the owner of the wireless network has the liability for sharing his Internet connection in breach of his ISP contract.
As a side note, I was taught in school that in the UK you can legally access any system which doesn't make attempts to stop you. Of course, if you then go ahead and break it or cause disruption you can be charged with damage to property and other such crimes, but just "seeing what's out there" and making use of what you find is legal, assuming what I was taught in school was correct. If this wasn't true, it would be illegal to connect to amazon.com on port 80 without prior permission; the fact that it isn't restricted implies permission to use it. If it required a password and I brute-forced the password to gain access, I would be breaking the law.