REAL WORLD EVENT DISCUSSIONS

Attn: Your Bike Locks and Laptop Locks can be easily broken

POSTED BY: JASONZZZ
UPDATED: Saturday, September 18, 2004 04:42
SHORT URL:
VIEWED: 2827
PAGE 1 of 1

Friday, September 17, 2004 6:33 AM

JASONZZZ




NYTimes article this morning (soul-stealing registration required) saids that it is very possible to crack open a particular type of Bike Locks and Laptop Locks very simply and quickly with an empty Bic pen barrel. I've included the link to the article, the article in text itself (so you don't have to sell your soul to the NYTimes as well), and also the link to a movie to the lock breaking itself. If you have one of these types of locks on your bike or on your laptop, time to get a new one.

This is *not* a joke. "Tell your friends before the thiefs tell theirs."

http://www.nytimes.com/2004/09/17/nyregion/17lock.html

http://www.bikeforums.net/bic/krypto_ev_disc_web.mov

September 17, 2004
The Pen Is Mightier Than the Lock
By LYDIA POLGREEN

The cunning bicycle thieves of New York City always seem to be one step ahead of lockmakers. Design a more sophisticated lock and the thieves make a better pick. Make a sturdier chain and they get bigger bolt cutters. And if all else fails, they just dig up the parking meter or stop sign to unshackle the bike from it. But to open some of the toughest locks on the market, a thief needs only to flick his Bic pen.

Many cyclists erupted in disbelief and anger this week after videos were posted on the Internet showing how a few seconds of work could pick many of the most expensive and common U-shaped locks, including several models made by Kryptonite, the most recognized brand.

Mashing the empty barrel of a ballpoint pen into the cylindrical keyhole and turning it clockwise does the trick that has struck fear into the hearts of bicycle owners, especially those in New York, where thousands of bikes are stolen each year.

"There was murmuring on various Web sites, and so I decided to go home and pick up a pen and see it if works," said Benjamin Running, a graphic designer who lives in downtown Brooklyn. "Sure enough, within 30 seconds I had broken into my $90 lock. I was in awe. My jaw literally dropped to the floor. It was so easy."

And many Internet users had the same reaction this week when they saw the homemade video he posted on his blog of his Kryptonite NY Chain popping open.

The problem could have wider consequences. Lock experts said the fault was with a particular type of cylindrical lock that is used not just in bike locks but in vending machines, cable locks for laptop computers, alarm system panels and countless other places.

Not all such locks are vulnerable, because some are built with more sophistication. Older Kryptonite locks made before 2002 appear to be less susceptible, according to bike shops that have tried to use the technique on them.

But this type of mechanism is used on most of the bicycle locks that are used by millions of people around the country, not just those made by Kryptonite (although the company said yesterday that a new and better model was on the way).

As the news spread, bicycle shops across the nation pulled the locks off their shelves and cyclists left their bikes at home, wondering if anything could keep their wheels safe.

"You would think for $80 for a bike lock it would be secure," said Marc Weber Tobias, an investigative lawyer and security expert, whose Web site, security.org, has posted warnings about the flaws of cylindrical locks like the ones used in U-locks. "But this doesn't surprise me at all."

The trick works because the pen has the right diameter and is rigid enough to hold its general shape but pliable enough to mold into a sort of key that opens the lock. Mr. Tobias said the vulnerability of such locks was well known in security circles.

"These are cheaply manufactured locks with serious design flaws," he said. "You can't possibly think your bike is safe with one of these locks."

The uproar appears to have started on Sunday, when Chris Brennan, a cyclist in San Francisco, posted an urgent message on the bikeforums.net bulletin board after he was able to pop open his lock with a pen.

Like many people, he had been skeptical, but doubts were quickly dispelled when users like Mr. Running started posting digital video clips of the trick. By yesterday, 125,000 people had downloaded it from, his site, thirdrate.com, he said. Meanwhile, nearly 170,000 had seen Mr. Brennan's posting, starting a full-fledged panic.

"We are especially concerned because we thought these were the best," said Noah Budnick, projects director at Transportation Alternatives, an advocacy group representing bicyclists in New York City. "Our members get a discount on these locks. What is really shocking is the casualness with which someone could steal a bike with one of these locks on it."

Kryptonite, which is based in Canton, Mass., and was bought by Ingersoll-Rand in 2001, is named for the only material that can defeat Superman. The company has been making locks since the 1970's and is recognized by most bicycle shops as the leading lockmaker.

It is so confident in the security of its locks that if a bicycle is stolen by someone who broke the lock, Kryptonite will pay up to $3,500 to replace the bike, depending on the model of lock, though there are several caveats to the policy. Bike shops in New York City overwhelmingly recommend the company's locks, particularly the four locks that are designed specifically for New York riders.

In a statement sent by e-mail yesterday, the company said that it was aware of the problem and was moving quickly to get locks featuring a different mechanism to bike shops and that it was designing a program to let users of compromised locks to upgrade to new ones.

Donna M. Tocci, a spokeswoman for the company, stressed that locks made by other manufacturers shared the same vulnerabilities.

Cyclists across the city marveled at how easy it was to crack their locks. With a little practice, opening a Kryptonite with a Bic barrel takes as little time as using a key, said Arone Dyer, a mechanic at Bicycle Habitat in SoHo. She produced the white plastic barrel of a Bic pen from her pocket along with a Kryptonite brand lock and provided a demonstration. In less than five seconds, the shackle popped and slid open.

"It is that easy," Ms. Dyer said.

The NY Chain lock, the product most shops recommend for city cyclists, consists of a heavy chain and small U-shaped lock. It weighs about six pounds, so heavy that many riders wear it slung around their waists. The chain is made of squared links of hardened steel that is impossible to cut by hand, so that part of the lock is still sound.

Bike shops are recommending that customers replace the small U-lock with a sturdy padlock, like the ones that bodegas use to secure their roll-down gates. These padlocks cost less than $20 at most hardware stores.

In addition, Kryptonite has a line of locks that feature flat keys; Transportation Alternatives recommended that its members buy one of those.

The group's Mr. Budnick said that most bike thefts could be prevented if only office buildings allowed people to bring their bicycles indoors, but few do. A bill requiring buildings to allow bikes inside was introduced by City Councilman David Yassky but has been stuck in the Housing and Buildings Committee.

Will Wood, whose Spokes and Strings shop in Williamsburg caters to the commuter market, said he was warning anyone who would listen.

"I feel like a Cassandra, but for years I have said to my customers, 'This is the industry standard, and this will keep your bike safe,' " Mr. Wood said. "Now I tell everyone who comes in, 'Tell your friends before the thieves tell theirs.' ''



Like Fireflyfans.net?
Haken needs a new development system. Donate.
http://www.fireflyfans.net/thread.asp?b=5&t=3283



NOTIFY: Y   |  REPLY  |  REPLY WITH QUOTE  |  TOP  |  HOME  

Friday, September 17, 2004 7:26 AM

SOUPCATCHER


Wow. Great catch, Jasonzzz. I'm going to have to check my bike lock and pass this information along.

Oh, in regards to sites that require registration, there's a website where people have uploaded their login data. Just go to http://www.bugmenot.com/ and type in the url and, if they have an account for that web site in their database, they'll provide the login and password. (They also have a plug in feature that I've been playing around with and really enjoying - you just menu click on any login and it will fill in a name and password if it's in the database).





I shaved off my beard for you, devil woman!

NOTIFY: Y   |  REPLY  |  REPLY WITH QUOTE  |  TOP  |  HOME  

Friday, September 17, 2004 9:54 AM

THEGREYJEDI


I like how the faulty locks come from a company based in CANTON, Mass.

--------------------------------------------------
http://tomeofgrey.blogspot.com

http://www.jed-soft.com Gamer Rigs, Budget Prices

NOTIFY: Y   |  REPLY  |  REPLY WITH QUOTE  |  TOP  |  HOME  

Saturday, September 18, 2004 3:34 AM

AILIAN


Hey, Canton is a very nice place! Very different from Canton, PRC though. ;)

When I was a student in Boston, USA I too rode a bicycle and always used a Kryptonite lock like those described in the article. When I left, I mailed my keys to a friend (I had forgot to leave them with her) and two weeks later my bicycle was still there (actually, thinking about it, I had two locks -- one flat and one cylindar). =)

Still, those locks are better than any locks used here in China, where bicycle theft is more of a problem. A four year old could break my lock. :/

NOTIFY: Y   |  REPLY  |  REPLY WITH QUOTE  |  TOP  |  HOME  

Saturday, September 18, 2004 4:42 AM

SGTGUMP


I heard a friend of mine say one time that all a lock does is keep an honest man honest. That really made sense to me. If you do any checking on the net you can find all kinds of places to buy lock picking kits for any kind of lock. I have told that to people and most of them believe that it is illegal to own them. But I have done a little research, and anyone can own a lock picking kit.

Be good.

NOTIFY: Y   |  REPLY  |  REPLY WITH QUOTE  |  TOP  |  HOME  

YOUR OPTIONS

NEW POSTS TODAY

USERPOST DATE

OTHER TOPICS

DISCUSSIONS
All things Space
Mon, November 25, 2024 02:54 - 268 posts
Reddit perverts want to rule censor the internet and politically controll it as they see fit.
Mon, November 25, 2024 02:04 - 15 posts
Elections; 2024
Mon, November 25, 2024 02:00 - 4800 posts
RFK is a sick man
Mon, November 25, 2024 01:58 - 20 posts
The Olive Branch (Or... a proposed Reboot)
Mon, November 25, 2024 01:52 - 5 posts
Oops! Clown Justin Trudeau accidently "Sieg Heils!" a Nazi inside Canadian parliament
Mon, November 25, 2024 01:24 - 4 posts
Stupid voters enable broken government
Mon, November 25, 2024 01:04 - 130 posts
Russia Invades Ukraine. Again
Mon, November 25, 2024 00:09 - 7499 posts
The predictions thread
Mon, November 25, 2024 00:02 - 1190 posts
Netanyahu to Putin: Iran must withdraw from Syria or Israel will ‘defend itself’
Sun, November 24, 2024 23:56 - 16 posts
Putin's Russia
Sun, November 24, 2024 23:51 - 69 posts
Musk Announces Plan To Buy MSNBC And Turn It Into A News Network
Sun, November 24, 2024 23:39 - 2 posts

FFF.NET SOCIAL