ChiefsPlanet Mobile
Page 4 of 4
< 1234
Nzoner's Game Room>How a telescope forum feud ended with prison time
notorious 10:19 AM 01-27-2020
I know we've had some real nutjobs on here........


https://www.theverge.com/2018/12/10/...um-cfaa-prison


How a Telescope Forum Feud Ended with Prison Time

By Adi Robertson

@thedextriarchy

Dec 10, 2018, 9:56am EST

When the FBI appeared at David Goodyear’s doorstep in August 2016, they started asking him about telescopes. The 42-year-old IT specialist and avid stargazer had frequented an astronomy forum called Cloudy Nights. Now, someone had taken the forum offline with a denial-of-service attack, and the evidence pointed to Goodyear.

Goodyear swore innocence at first, but after increasingly pointed questioning, he confessed. One of his accounts had been banned a couple of weeks ago, he said. In a sudden rage, he’d spammed the site with pornography, then posted its address on a site called HackForums.net, asking for someone to attack it. “I was just, like, what the fuck am I being banned for? I was just pissed,” he told his visitors — one from the Federal Bureau of Investigation and another from the Los Angeles Police Department. “I just went up in, just the heat of the moment.”

His visitors seemed mildly amused by the forum drama, and he chatted with them about his $100,000 telescope collection before they left. But one year later, Goodyear was arrested. In December 2018, he was sentenced to more than two years in prison for violating the Computer Fraud and Abuse Act.

It’s a sentence that even Goodyear’s victims don’t want him to serve. A single forum post was enough to direct a temporarily devastating attack on a small business, while federal computer crime laws meant that same post could now come with life-changing consequences.

Distributed denial of service (or DDoS) attacks are one of the simplest cyberattacks: they flood a site with huge amounts of traffic until it can no longer serve pages to real users. At a large scale, these attacks can be incredibly disruptive. The 2016 Mirai DDoS shut down large sections of the web, hijacking insecure smart devices to create an army of bots. Even at a smaller scale, they can cause real harm — like Goodyear’s request did to the owners of the Cloudy Nights forum.

Cloudy Nights is run by Astronomics, an Oklahoma-based company that sells telescopes and other astronomy gear. Vice president Michael Bieler estimates that the forum has around 115,000 registered users swapping advice, space photos, and opinions about telescopes. Bieler describes Cloudy Night as generally “a nice peaceful edge of the internet” where moderators have handed out fewer than a dozen lifetime bans in over 15 years of operation. Politics are prohibited except on a board for discussing light pollution laws.

On August 13th, someone named HawaiiAPUser posted a screenshot of a failed login attempt, indicating they’d been banned under another name. Below was a string of sexual insults and porn links. “Mods and admins can’t stop me!” the user wrote. “I think I will talk with my contacts and just D0S this site as well as A55stronomics,” an apparent reference to a denial-of-service attack.

The next day, Cloudy Nights and Astronomics’ website started getting overloaded with traffic, making the forums unreliable and keeping Astronomics.com almost completely offline. “We’re just a small family-owned business, and he shut us down essentially for two weeks,” Bieler tells The Verge. “I made zero income. It was almost nonexistent.”

As the attack continued, Bieler called the local police and a lawyer who told him to contact the FBI. “I was like, ‘Well, they’re going to laugh at me when I tell them someone got mad on a forum and has decided to take down my website,’” he says now. But at the time, he was deadly serious. Bieler told the agency that he was afraid his company would go out of business if the attacks continued, and that his father — the company’s founder — had gone to the hospital with cardiac problems from the stress. “It is literally killing him,” he wrote in an email.

Cloudy Nights’ moderators, meanwhile, had a good idea who was behind the attack. Goodyear had been a regular visitor until 2013 when he was banned for — as he put it — “mouthing off” to moderators. (Court documents paint a darker picture, saying he followed up with a threatening message “asking to fight” one of them.) He’d created several more accounts since then, and moderators kept banning them. HawaiiAPUser’s screenshot had a timestamp, so they checked which accounts had been active at that moment and whether other people had logged in from the same IP address. Goodyear’s old accounts came up.

On August 31st, the FBI and LAPD visited Goodyear’s house in El Segundo, California. Goodyear professed bafflement about why they’d come, claiming that he wasn’t behind the post. “I kind of washed my hands of this website,” he said, suggesting that an employee or a hacker might have used his network.

The agents threatened to start filing search warrants. “The FBI knows what they’re doing,” one warned ominously. “We caught Osama bin Laden, right? We can catch someone doing a DDoS.”

The argument apparently convinced Goodyear. “I did post that crap about hitting them. I also put on a hack forum, saying, ‘Hey, can you take down this site?’” he admitted. “I think that maybe it went further than what it should have.” But he insisted that he had no hacking expertise and hadn’t paid anyone for the attack. When asked whether he could make the attacks stop, he said he “didn’t know [the HackForum members] well enough.”
"“We caught Osama bin Laden, right? We can catch someone doing a DDoS.”"

It’s not totally clear how the DDoS campaign did end. According to a September 2016 screenshot of Goodyear’s HackForums.net account, the last time he logged in — at least under his original username — was August 29th. The last successful DDoS attempt was on August 30th, the day before Goodyear spoke to the FBI. The attackers may have stopped voluntarily after that, or they might have been stymied by Astronomics’ new defenses since Bieler had hired a cybersecurity expert to help.

In a press release, the Justice Department emphasized “the importance of deterring sophisticated cybercrimes, which are difficult to trace and therefore particularly important to punish.” But the way Goodyear described his crime was almost ridiculously unsophisticated. In his FBI interview, he said he’d searched Google for ways to get back at Cloudy Night. “I was looking for other ways to see if I could take them out, if I could hack... get a botnet or something.” He found HackForums.net, said “screw it,” and signed up.

Either way, a jury found Goodyear responsible for one count of “intentional damage to a protected computer.” A judge sentenced him to a $2,500 fine, $27,352 in restitution, and 26 months in prison.

Bieler had assumed the case was closed until the FBI arrested Goodyear a year later and summoned Bieler to court. He was shocked when he learned about the length of the sentence. He never wanted Goodyear to be imprisoned at all, let alone for two years. “Honestly, I think it’s extreme, what happened,” he says. “We actually asked in our letter [to the court] that he not get prison time. We just wanted him to stop attacking our website.”

Virtually everyone involved in catching Goodyear seemed a little bemused by the whole saga. “How are you guys getting banned from an astronomy site?” wondered the FBI agent who arrived to question him. “Is there a debate on a tenth planet or something?” And in Goodyear’s estimation, all he’d done was log into a forum, ask “Hey, can you guys hack this?” and go back to life as usual. He agreed that what he’d done was wrong, but he seemed surprised to hear that he could get in real trouble for it.

Today, Bieler finds it “insane” that a man would nurse a three-year-long grudge against an astronomy forum so bitterly that he would effectively try to bankrupt a company in revenge. “If people could just step away from their keyboards for five seconds, a lot of this wouldn’t happen,” he says. But as the case reaches its end, he simply feels bad for everyone involved — including Goodyear.

“Look, losing money sucks. Having my business down for a few weeks sucks. Not knowing what’s going to happen because you have no income coming in to pay people’s salaries sucks,” says Bieler. “Losing two years of your life because you did something dumb sucks worse.”
[Reply]
burt 02:01 PM 01-27-2020
Originally Posted by Hog's Gone Fishin:
Could a mod please delete every post I've made and just go ahead and delete my account!
Several of us have asked for this repeatedly.....yet here you are.
[Reply]
big nasty kcnut 02:17 PM 01-27-2020
The arguement was if pluto is a planet. Also guess what folks it is.
[Reply]
Megatron96 02:19 PM 01-27-2020
Originally Posted by big nasty kcnut:
The arguement was if pluto is a planet. Also guess what folks it is.
This jackass tried to destroy a man's business over that? He deserves to spend every minute of two years in prison.
[Reply]
Frazod 02:21 PM 01-27-2020
Originally Posted by Megatron96:
This. Stop doing stupid/illegal things and you don't go to jail/prison. Pretty simple rule.
Part of me agrees with this. Play stupid games, win stupid prizes.

But then part of me thinks about rapists who get off with probation because either they or their parents have money.

Our justice system is a fucked up mess.
[Reply]
'Hamas' Jenkins 02:25 PM 01-27-2020
Originally Posted by Frazod:
Part of me agrees with this. Play stupid games, win stupid prizes.

But then part of me thinks about rapists who get off with probation because either they or their parents have money.

Our justice system is a fucked up mess.
What's the most fucked up miscarriage of justice you've seen in your career?
[Reply]
RealSNR 02:36 PM 01-27-2020
What's DDoS stand for?
[Reply]
Frazod 02:44 PM 01-27-2020
Originally Posted by 'Hamas' Jenkins:
What's the most fucked up miscarriage of justice you've seen in your career?
I haven't done criminal since I was in the Navy, so you're going back 30 years.

And oddly enough, it was a case where a guy was guilty as sin, but such a good bullshitter that he actually talked him way out of a urinanalysis conviction, which I saw happen exactly once. I was in the court room when the verdict was announced - I thought it was the greatest thing ever. Then later one of the guys who worked for me ran into the accused at a bar on base, and he told my buddy that he was guilty as fuck and lied his ass off.

Even though the military court conviction rate is damn near 100%, in the time I was there I never saw a case where I thought a guy got railroaded. Plus, by the time they got to my level, they'd usually already fucked up at least once before and been punished at a non-judicial level. I personally though kicking guys out just because they got high was over the top, just because I was young and didn't have a problem with it personally, but that was the rules and we all knew it.
[Reply]
Hog's Gone Fishin 02:54 PM 01-27-2020
Originally Posted by burt:
Several of us have asked for this repeatedly.....yet here you are.
Thanks, have a beer and shut up.:-)
[Reply]
DaFace 03:09 PM 01-27-2020
Originally Posted by RealSNR:
What's DDoS stand for?
Distributed Denial of Service (attack)

Basically, networks of hacked computers start hitting a site over and over again from thousands of directions. The server can't keep up, resulting in an effective takedown for as long as the attack is active.
[Reply]
burt 03:34 PM 01-27-2020
Originally Posted by 'Hamas' Jenkins:
What's the most fucked up miscarriage of justice you've seen in your career?
There is no justice. Just money exchanges and wins and losses. Justice is a historical term.
[Reply]
burt 03:36 PM 01-27-2020
Originally Posted by DaFace:
Distributed Denial of Service
I think that happened to me in a strip club......
[Reply]
Rain Man 03:49 PM 01-27-2020
In an alternate universe the guy is getting a medal for shutting the web site down. And he has the feet of a duck.
[Reply]
Page 4 of 4
< 1234
Up