On ZDNet: Why $99 iPhone help customers

You say cracker; I say hacker: A hacking lexicon

Tags: Loraine Lawson

  • Save
  • Print
  • Recommend
  • 5

Takeaway: Crackers, hackers, phrackers, phreakers, sneakers: Is there a difference? Here's a primer on hacking nomenclatures to help you keep the bad guys and the good guys straight.


Recently, a debate broke out on TechRepublic over the use of the word “hacker” in an article describing DDoS attacks (see "TechRepublic members say the law needs to punish cyber criminals, not the victims"). Member Lee McGrevin, a systems administrator, took exception to that article’s usage of the term “hacker,” stating that the correct term for someone who launches a DDoS attack would be “cracker.”

“I am surprised that such a technical-based Web forum would stoop low enough to jump on the bandwagon of the hacker witch hunt,” McGrevin wrote. “Let’s get the record straight for those of us who wear the white hat. A hacker is someone with deep knowledge of how systems work, how to optimize them through noncommercial ways, and [how to] improve the overall quality of programs and [deal with] security-related issues.”

McGrevin basically felt that calling those who engage in DDoS attacks “hackers” was demeaning to the hacking community and a hallmark of bad reporting.

We certainly regret mislabeling anyone, although in our defense, we’d like it noted that hacking is used generically both in the media and in the IT security field to refer to illegal tampering with systems.

So to make sure no other members out there fall into the same trap we did, let’s all take a closer look at this issue.

Depends on whom you ask
In some ways, the definition of these terms depends upon whom you ask. Take, for example, the following various interpretations of hacking.

The National Security Agency (NSA) defines hacking simply as the “unauthorized use, or attempts to circumvent or bypass the security mechanisms of an information system or network.”

By comparison, Hackers.com, an underground domain whose stated purpose is to “provide a place for hackers, phone phreaks, and other underground-related people to interact and expand their minds,” offers a somewhat more poetic and gracious definition of hacking:

“Hacking is the act of penetrating a closed computer system for the knowledge and information that is contained within. Through the study of technology and computers, a hacker can open his mind and expand his knowledge. Hacking is intended to free information and expand minds, not to be destructive nor for material gain. There is always some debate because of how the term ‘hacker’ has been both glorified and undermined by common media, but most will say that those who destroy data, hack for money, or hack with illegal intent should be referred to as ‘crackers,’ not hackers.”

On the other hand, TechRepublic member Edward Clint, a systems administrator for HealthCenter Internet Services, made this important distinction:

“No one with a real IT job calls themselves either a hacker or a cracker. …In the real world, we are Security Experts, System Engineers, Network Admins and Architects, and so forth.”

A list of terms
To help set the record straight, we’ve provided a breakdown of terms and their definitions from the "NSA Glossary of Terms Used in Security and Intrusion Detection." You might also want to visit Information Security Magazine’s online descriptions of "Perpetrator Subtypes."

Hacking Unauthorized use, or attempts to circumvent or bypass the security mechanisms of an information system or network.
Hacker A person who enjoys exploring the details of computers and how to stretch their capabilities. A malicious or inquisitive meddler who tries to discover information by poking around. A person who enjoys learning the details of programming systems and how to stretch their capabilities, as opposed to most users who prefer to learn only the minimum necessary.
Crack A popular hacking tool used to decode encrypted passwords. System administrators also use crack to assess weak passwords by novice users in order to enhance the security of the Automated Information System (AIS).
Cracker One who breaks security on an AIS. Automated Information System - any equipment of an interconnected system or subsystems of equipment that is used in the automatic acquisition, storage, manipulation, control, display, transmission, or reception of data and includes software, firmware, and hardware.
Samurai A hacker who hires out for legal cracking jobs, snooping for factions in corporate political fights, lawyers pursuing privacy-rights and First Amendment cases, and other parties with legitimate reasons to need an electronic locksmith.
Sneaker An individual hired to break in to places in order to test their security; analogous to tiger team.
Tiger Team Government and industry-sponsored teams of computer experts who attempt to break down the defenses of computer systems in an effort to uncover, and eventually patch, security holes.
Ankle-Biter or Script Kiddies A person who aspires to be a hacker/cracker but has very limited knowledge or skills related to AIS's. Usually associated with young teens who collect and use simple malicious programs obtained from the Internet.
Phreaking The art and science of cracking the phone network.
Phreak(er) An individual fascinated by the telephone system. Commonly, an individual who uses his knowledge of the telephone system to make calls at the expense of another.
Phracker An individual who combines phone phreaking with computer hacking.

Hacking Unauthorized use, or attempts to circumvent or bypass the security mechanisms of an information system or network.
Hacker A person who enjoys exploring the details of computers and how to stretch their capabilities. A malicious or inquisitive meddler who tries to discover information by poking around. A person who enjoys learning the details of programming systems and how to stretch their capabilities, as opposed to most users who prefer to learn only the minimum necessary.
Crack A popular hacking tool used to decode encrypted passwords. System administrators also use crack to assess weak passwords by novice users in order to enhance the security of the Automated Information System (AIS).
Cracker One who breaks security on an AIS. Automated Information System - any equipment of an interconnected system or subsystems of equipment that is used in the automatic acquisition, storage, manipulation, control, display, transmission, or reception of data and includes software, firmware, and hardware.
Samurai A hacker who hires out for legal cracking jobs, snooping for factions in corporate political fights, lawyers pursuing privacy-rights and First Amendment cases, and other parties with legitimate reasons to need an electronic locksmith.
Sneaker An individual hired to break in to places in order to test their security; analogous to tiger team.
Tiger Team Government and industry-sponsored teams of computer experts who attempt to break down the defenses of computer systems in an effort to uncover, and eventually patch, security holes.
Ankle-Biter or Script Kiddies A person who aspires to be a hacker/cracker but has very limited knowledge or skills related to AIS's. Usually associated with young teens who collect and use simple malicious programs obtained from the Internet.
Phreaking The art and science of cracking the phone network.
Phreak(er) An individual fascinated by the telephone system. Commonly, an individual who uses his knowledge of the telephone system to make calls at the expense of another.
Phracker An individual who combines phone phreaking with computer hacking.
We’d like to know: What’s your take on this whole hacker/cracker debate? Is there an important distinction between all of these terms, or is it mere semantics? Post your comments below.
  • Save
  • Print
  • Recommend
  • 5

Print/View all Posts Comments on this article

other names for crackers eagle@... | 04/15/01
In the beginning gdooley@... | 04/17/01
harryshipley@... | 04/26/01
Not from scratch, but... admin@... | 04/26/01
I had one as a kid. epepke@... | 04/26/01
Mechanical plastic flip flop! admin@... | 04/26/01
Same Here TTL redwitch01 | 04/28/01
upter from kit Harry.Shipley@... | 12/08/03
Wrapping my tongue around my teeth... epepke@... | 04/26/01
best story I've seen this year happy admin@... | 04/26/01
Oh yeah epepke@... | 04/26/01
Music and Math admin@... | 04/26/01
Get a Life Fl-Bob | 05/16/01
Ones and Zeros Harry.Shipley@... | 12/08/03
Who Cares what they call themselves... jackshackauto | 04/17/01
response to hackers valkos2@... | 04/18/01
You're Right- Overkill jackshackauto | 04/22/01
suggestion valkos2@... | 04/22/01
Spray paint is not a hack steven_g_11415@... | 04/18/01
Pro Hacking... jackshackauto | 04/22/01
Raw nerve epepke@... | 04/24/01
I agree with Jack Shanghai Sam | 04/27/01
Obviously, you and jack don't know Jack admin@... | 04/27/01
You've got alternatives jwats0560@... | 12/08/03
jack I feel for you SiliconScout | 04/27/01
Huh? generalist@... | 04/27/01
Natural but lamentable epepke@... | 04/27/01
We're not talking about skin color here. terry.kirkpatrick | 12/08/03
Its old, but needs to be posted. chad@... | 06/18/01
null terry.kirkpatrick | 12/08/03
Its old, but needs to be posted (p2) chad@... | 06/18/01
You just made my work better. admin@... | 06/18/01
Passive Agressive Computer LUser | 12/08/03
More Info donovanraymond | 04/17/01
Immerse yourself valkos2@... | 04/18/01
...and even more info... amachanic | 04/26/01
Gibson epepke@... | 04/28/01
A rose by any other name..... potesh@... | 04/17/01
...is still a rose. tuckerc | 04/17/01
it may be beautiful, but can cause pain valkos2@... | 04/18/01
Robin Hood Hackers ISGirl | 12/08/03
Now you got it. terry.kirkpatrick | 12/08/03
Crackers or Hackers? Who Cares! jtw | 04/17/01
Call it job security valkos2@... | 04/18/01
lets clear the air valkos2@... | 04/18/01
You said it! jackshackauto | 04/22/01
Two side to the story valkos2@... | 04/22/01
A long time ago...in 1980 infomagic@... | 04/17/01
Eric Raymond has a take on this.. ccalvert@... | 04/18/01
Pfft... pallan | 04/18/01
Good, but more concisely epepke@... | 04/19/01
Best description I think I've ever read! admin@... | 04/19/01
Thank you epepke@... | 04/20/01
Ya Think? jackshackauto | 04/22/01
Yes epepke@... | 04/24/01
Go to school, become a professional Fl-Bob | 05/16/01
1 Man's honor is another's denigration. allisonmea@... | 06/26/01
Simply Put derryd | 12/08/03
English language Big Trent | 12/08/03
Just personal understanding from life experience jwats0560@... | 12/08/03
Hackers & Criminals InvisibleBoss | 04/16/01
hacker I may be, cracker I am not cynthia.rice@... | 04/17/01
Couldn't have said it better Former MS Supporter | 04/18/01
You Rock! admin@... | 04/19/01
This sums it up!! bjones@... | 06/26/01
Mr. Clints Assumption.... s_park | 04/17/01
I disagree. ozone@... | 06/26/01
why do we care? Shanghai Sam | 04/17/01
Touche' jackshackauto | 04/22/01
Criminal/ Thief /Burgular Dylan Teo | 04/26/01
Read the rest of this post.. admin@... | 04/27/01
Good on you! epepke@... | 04/28/01
Remember KISS louisd@... | 06/15/01
Double Standard bjones@... | 06/26/01
Possession 9/10s of the law... blarman | 12/08/03
Language evolution generalist@... | 04/16/01
It isn't the language; it's the attitude epepke@... | 04/16/01
"language" lotta_anger | 04/17/01
You're missing the point ethan@... | 04/17/01
LOL jackshackauto | 04/22/01
Hacker == Computer Guru Shanghai Sam | 04/17/01
Context generalist@... | 04/17/01
Too Many Syllables Shanghai Sam | 04/17/01
criminals admin@... | 04/17/01
But this is TechRepublic! epepke@... | 04/18/01
Variable viewpoints generalist@... | 04/18/01
But Still epepke@... | 04/19/01
Sidebar bjones@... | 06/26/01
Good One Shanghai Sam | 04/22/01
Automotive Hacking epepke@... | 04/24/01
Damn! I better get rid of my Compiler... admin@... | 04/24/01
To admin@l33tcentral.com epepke@... | 04/24/01
Hacking/Cracking Bumper Sticker generalist@... | 04/26/01
No Substitute! admin@... | 04/18/01
Regarding Language Evolution blarman | 06/26/01
True, however... epepke@... | 06/26/01
Words don't mean what they used to... ISGirl | 12/08/03
Reclaimable shardeth | 12/08/03
Try the "jargon file" draco vulgaris | 04/17/01
Live to Hack, Hack to Live.... admin@... | 04/17/01
If you call yourself a hacker.... ISGirl | 12/08/03
Jargon file, AKA Hackers' Dictionary shiva | 06/05/01
Cyber Terrorists?? Trish_Sutter | 04/23/01
Cyber Terrorists admin@... | 04/23/01
Hackers are not Crackers donald.yost@... | 04/27/01
Clarification of Terms Paul G. | 06/15/01
What about the general populace? admin@... | 06/17/01
The New Hacker's Dictionary baggins_tr | 01/16/02
Amen. admin@... | 01/17/02
Something a found out at black.box.sk ASloan | 03/02/02
Excellent Article! admin@... | 03/03/02
Inconsistent Definition mschroer@... | 12/08/03
Perspectiveand Perception Defines "The Hacker" atticbat | 12/08/03
Get Over It Mindtickler | 12/08/03
A rose by any other name....... Darrell Scott | 12/08/03
Stolen title shardeth | 12/08/03
Cracker vs Hacker thinker999 | 12/09/03
I'm a genius! terry.kirkpatrick | 12/09/03

What do you think?

White Papers, Webcasts, and Downloads

Article Categories

Security
Security Solutions, IT Locksmith
Networking and Communications
E-mail Administration NetNote, Cisco Routers and Switches
CIO and IT Management
Project Management, CIO Issues, Strategies that Scale
Desktops, Laptops & OS
Windows 2000 Professional, Microsoft Word, Microsoft Excel, Microsoft Access, Windows XP,
Data Management
Oracle, SQL Server
Servers
Windows NT, Linux NetNote, Windows Server 2003
Career Development
Geek Trivia
Software/Web Development
Web Development Zone, Visual Basic, .NET

Meet Doc

advertisement
Click Here