Follow Us

We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message

Facebook source code hacker Glenn Mangham on 'what really happened'

Student, 26, said he meant no harm and hoped Facebook would let him off the hook

Article comments

Glenn Mangham, the Facebook hacker who stole the social network's source code, has gone public with a deeper explanation of how he penetrated the website.

The 26-year-old student, of York, posted a lengthy writeup on his blog and a video, saying that he accepts full responsibility for his actions and that he did not think through the potential ramifications.

"Strictly speaking what I did broke the law because at the time and subsequently it was not authorised," Mangham wrote. "I was working under the premise that sometimes it is better to seek forgiveness than to ask permission."

Mangham implied he meant to contact Facebook once he had noticed the social networking site had observed his intrusions, which he did little to hide. He didn't use proxy servers because he said it made auditing take longer due to the time delay between each request made to a server. He was also hoping that even when he got caught, Facebook would let him off the hook.

That didn't happen. He was charged and eventually pleaded guilty to three counts of unauthorised access to computer material and unauthorised modification of computer data, according to The York Press.

Mangham was sentenced to eight months in prison in February, but the sentence was reduced to four months by an appeals court earlier this month. He was then eligible for release, subject to electronic monitoring and restrictions on his internet use.

Mangham used a vulnerability to download Facebook's source code, arguably the company's most valued and secret intellectual property.

Mangham portrayed himself as a security researcher who continued to probe Facebook because he wanted to look deeper for other security issues, since most systems have "a tough outer shell and a soft inside." He wrote that in the past he had been paid by Yahoo for finding vulnerabilities.

He said he took steps to prevent damage to Facebook's systems, hard-coding a delay in scripts he used to extract the source code to prevent "throttling of the server and impeding its availability."

After he knew Facebook was on his trail, Mangham wrote he "panicked because I knew how bad it looked without sufficient context." He maintained that "almost nobody" knew he had a copy of the site's source code, and that he kept it "physically detached from the internet."

"In many respects, it was better secured than the original," Mangham wrote.

Mangham's copy of the source code would surely have been of interest to cybercriminals who attempt to use Facebook to perpetuate scams. But he wrote he had no intention of selling the code.

"It is also worth mentioning that I had the source code for just over three weeks with absolutely nothing to prevent me from making copies and redistributing it, this was more than enough time to have caused significant damage to Facebook or to find a buyer, if that had ever actually been my intention but quite clearly it was not," Mangham wrote.

"When you consider that the only thing that stood between Facebook and potential annihilation were my ethics then I think the fact that it's all still in good working order should serve as some proof that I'm really not one of the bad guys," he wrote.



Share:

More from Techworld

More relevant IT news

Comments

rocky john said: Strictly speaking what I did broke the law because at the time and subsequently it was not authorised



Send to a friend

Email this article to a friend or colleague:

PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Techworld White Papers

Choose – and Choose Wisely – the Right MSP for Your SMB

End users need a technology partner that provides transparency, enables productivity, delivers...

Download Whitepaper

10 Effective Habits of Indispensable IT Departments

It’s no secret that responsibilities are growing while budgets continue to shrink. Download this...

Download Whitepaper

Gartner Magic Quadrant for Enterprise Information Archiving

Enterprise information archiving is contributing to organisational needs for e-discovery and...

Download Whitepaper

Advancing the state of virtualised backups

Dell Software’s vRanger is a veteran of the virtualisation specific backup market. It was the...

Download Whitepaper

Techworld UK - Technology - Business

Innovation, productivity, agility and profit

Watch this on demand webinar which explores IT innovation, managed print services and business agility.

Techworld Mobile Site

Access Techworld's content on the move

Get the latest news, product reviews and downloads on your mobile device with Techworld's mobile site.

Find out more...

From Wow to How : Making mobile and cloud work for you

On demand Biztech Briefing - Learn how to effectively deliver mobile work styles and cloud services together.

Watch now...

Site Map

* *