
Corporate espionage uncovered by eagle-eyed customer CIO...
Published: 12 December 2005 08:30 GMT
A former software executive's guilty plea to charges of breaking into a rival's computers and stealing trade secrets has offered a rare glimpse into the world of corporate espionage.
John O'Neil, former CEO of Business Engine Software, pleaded guilty in a San Francisco federal court last week to conspiracy to download and steal the trade secrets of software competitor Niku over a 10-month period.
O'Neil, 43, is the third former executive of the San Francisco company to admit guilt in a case that the FBI's computer intrusion squad helped to investigate in 2002. He faces a maximum sentence of 10 years in jail and a $250,000 fine. Sentencing is scheduled for next spring.
His plea brings to near conclusion a criminal case that uncovered, in unusual detail, one company's plunge into the world of corporate espionage in the digital age.
Court documents from a related 2002 civil case against Business Engine brought by Niku, now owned by Computer Associates International, reveal the extent of the crime and how it was perpetrated. According to that complaint, Business Engine illegally obtained confidential account names and passwords that enabled broad administrative access to Niku's computers over the internet. Both companies sell web-based project management software.
From October 2001 until July 2002, Business Engine used the passwords to gain unauthorised access to Niku's systems more than 6,000 times and downloaded over 1,000 confidential documents containing trade secrets, the complaint alleged.The stolen documents included technical specifications, product designs, prospective customers, customer proposals, client account information and pricing.
Niku discovered the break-in after a Business Engine salesman made an unsolicited call to one of Niku's prospective clients, a Nike employee who happened to be related to Niku's CIO, Warren Leggett. The call raised suspicion because the Nike employee was not ordinarily responsible for software purchasing decisions, had never heard of Business Engine and had no idea how the salesman had obtained his contact information, according a declaration by Leggett.
The incident prompted Leggett to examine his company's computer logs and files from his recent meeting with Nike. He quickly determined from a trail of internet network addresses that someone from outside the company had been stealing files. Leggett was able to trace the intrusions back to Business Engine by using internet domain registration information and publicly available internet tools, the declaration says. In the various break-ins, the perpetrators used 15 different user names and passwords associated with Niku employees.
How did Business Engine get its hands on 15 passwords and user names? The court documents don't discuss that and O'Neil's attorneys did not return calls requesting further information. But according to a CA executive, someone at Business Engine nabbed them from an online Niku employee training system that was not password-protected. "They hacked into a soft spot," said David Hurwitz, VP of marketing at CA's Clarity unit, formerly Niku.
Hurwitz said he and his colleagues were pleased to learn of O'Neil's plea this week. "We think that justice has been served for these three crooks, and it definitely sends a message out to Silicon Valley that theft of intellectual property is serious theft, especially when done as brazenly as Business Engine did it," he said.
Business Engine spokesman Kazim Isfahani said the company has put the case behind it, noting that everyone involved in the crime no longer works there. "It's nothing we're involved with anymore," he said.
Business Engine settled the 2002 civil suit by agreeing to pay Niku $5m and promising not to incorporate any of Niku's trade secrets into its products.
The criminal case, brought by US Attorney Kevin Ryan, continues. Sentencing for O'Neil and the other two defendants, Robert McKimmey, former CTO of Business Engine Software, and William McMenamin, its former sales chief, is scheduled for 17 May 2006 in the US district court of Northern California in San Francisco.
Alorie Gilbert writes for CNET News.com
In addition to our headquarters in San Francisco, our 300+ person global workforce is strategically located in New York, London, Paris, Calypso ...
The Matrix, Star Wars: The Phantom Menace; 3D games such as Dungeon Siege, Splinter Cell, Grand Theft Auto; and award-winning designs from leading ...
Organisations in more than 60 countries use their software solutions and the company has offices in San Francisco, New York, Paris, Hong Kong and ...
CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.
July 10th: Just MASH Marketing: The Customer Reference Mashup
TechNet Webcast: How Microsoft Does IT: Management and Operations in Windows Server...
Mashing it up with Support: Automate, Coordinate and Collaborate with the Incident...
Ensure Virtualization is Meeting Your Needs--Read this New White Paper
Stories from the web...
Copyright ©1995-2008 CNET Networks, Inc. All rights reserved. Top of page
silicon.com Dear silicon.com: Tech teacher shortage, Kangaroo and phones on planes Reader Comments of the Week
Mike Barrett From CIO to consultant: Project manager or salesman? Hard lessons from the coalface…