Global Dashboard

« I spy | Home | From financial services to food: liberalisation’s high water mark »

Ways in which we are screwed #94

April 11, 2008 | by David Steven | More on Conflict and security | No comments

It’s been a long day, so excuse the bad mood. But, really: is it possible to read an article like this without falling further into deep despair?

Ira Winkler has the delightful job title of ‘penetration-testing consultant’. Hired by a US power utility, his task was to see how hard it was to take over their systems.

The answer? Not very.

The power company, it turns out, takes security so seriously that it runs the electricity grid on PCs that can also be used for buying marshmallows, watching teen-on-teen violence, or any of the other joys offered on these here internets (if it took you less than half an hour to read that sentence, then you’re not clicking on the links).

All Ira had to do was to (i) hang around on a few forums and harvest email addresses for people working at the power company; (ii) email the suckers employees and tell them that their benefits were about to be cut and that they needed to click a link RIGHT NOW to find out more; and (iii) use the website to infect, and take control, of their machines. Within minutes, apparently, he had ‘full system control’.

The experiment was shut down as soon as the company realized, in Wikler’s words, that it was ‘royally screwed.’ He notes: ‘The power grid is so poorly maintained that it is easier to attack than most other systems and networks. They hope for the best and make the risk-avoidance excuse if something goes wrong.’

Oh yes, and: ‘The real bad guys already know what I’m saying. There is the potential for serious damage.’

Feeling safer now?



Related posts

  1. Re: Ways in which we are screwed #94
  2. Google Grids
  3. To stop Russian expansionism, take away the excuse for it
  4. Live blogging Fabian foreign policy conference tomorrow
  5. Quis custodiet ipsos custodes?

Comments are closed.

Browse the archives

Key Posts

Pakistan, Kilcullen, Evans - a reply to David Miliband

Do we know what we’re trying to achieve in Pakistan?

Read more » | Comments Off

More on African land deals

Article on rich-country land acquisitions in Africa

Read more » | Comments Off

New report on international institutions and climate change

New report by Alex Evans and David Steven exploring the future international institutional requirements for managing climate change.

Read more » | 1 Comment

The self-resilient society

In a brittle society, we need radical action to build a “Resilient Nation” - so argues a new pamphlet for Demos, by Charlie Edwards.

Read more » | Comments Off

Time to dump 0.7

Why does 0.7 remain so central to the development debate, given that it was arbitrary even when it was agreed… forty years ago?

Read more » | 4 Comments

Peak Emissions Now

Why wait until 2015? Let’s declare 2009 the high watermark for global greenhouse gas emissions.

Read more » | 2 Comments

The peacekeeping crisis in numbers

What happens when you authorise peacekeeping missions - but don’t have the troops to deliver.

Read more » | Comments Off

After the crunch: more urbanisation or less?

Consensus may be growing that the credit crunch spells the end of suburbia - but will what comes next involve more urbanisation, or less?

Read more » | 4 Comments

Calendar

April 2008
M T W T F S S
« Mar   May »
 123456
78910111213
14151617181920
21222324252627
282930