Slashdot Mirror


US Prepares for Eventual Cyberwar

The New York Times is reporting on preparations in the works by the US government to prep for a 'cyberwar'. Precautionary measures are being taken to guard against concerted attacks by politically-minded (or well-paid) hackers looking to cause havoc. Though they outline scenarios where mass damage is the desired outcome (such as remotely opening a dam's gates to flood cities), most expect such conflicts to be more subtle. Parts of the internet, for example, may be unreachable or unreliable for certain countries. Regardless, the article suggests we've already seen our first low-level cyberwar in Estonia: "The cyberattacks in Estonia were apparently sparked by tensions over the country's plan to remove Soviet-era war memorials. Estonian officials initially blamed Russia for the attacks, suggesting that its state-run computer networks blocked online access to banks and government offices. The Kremlin denied the accusations. And Estonian officials ultimately accepted the idea that perhaps this attack was the work of tech-savvy activists, or 'hactivists,' who have been mounting similar attacks against just about everyone for several years."

46 of 223 comments (clear)

  1. Isn't this blown out of proportion, again? by Anonymous Coward · · Score: 4, Insightful

    I mean who the FUCK would be stupid enough to have the controls for a Dam connected to the internet?

    1. Re:Isn't this blown out of proportion, again? by Anonymous Coward · · Score: 5, Informative

      Looks like you were right; FTA:

      "..through the industrial remote-control technologies known as Scada systems, for Supervisory Control and Data Acquisition. The technology allows remote monitoring and control of operations like manufacturing production lines and civil works projects like dams"

      Words fail me.

    2. Re:Isn't this blown out of proportion, again? by garoo · · Score: 5, Interesting

      Not all that unusual. I was visiting a water treatment/chlorination plant in the UK a few years ago (for complex reasons related to archaeology rather than anything particularly on-topic, so it is likely that we got the Cliff Notes version). They pointed to the computer that controls the water chlorination and said 'we control this via this modem right here'. Presumably there are all sorts of security controls around actually accessing via said modem, given that we are talking about a PC controlling the quality of the drinking water supplied to maybe 20,000 people.

      This doesn't matter very much anyway. TFA seems to have confused 'you can connect to it remotely via some mechanism or another' and 'anyone connected to the internet can just ssh right in/DDOS it'. FUD.

    3. Re:Isn't this blown out of proportion, again? by timeOday · · Score: 2, Insightful

      Actually some very important things are reachable via the internet. Like millions of people's bank accounts, for instance. Heck, it's not the Internet, but highly classified satellites download data all the time through the open air. Relying on encryption is unavoidable.

    4. Re:Isn't this blown out of proportion, again? by NeverVotedBush · · Score: 2

      Strangelove: I would not rule out the chance to preserve a nucleus of human specimens. It would be quite easy...heh, heh...(He rolls his wheelchair forward into the light) at the bottom of ah...some of our deeper mineshafts. Radioactivity would never penetrate a mine some thousands of feet deep, and in a matter of weeks, sufficient improvements in drilling space could easily be provided.
      President: How long would you have to stay down there?
      Strangelove: ...I would think that uh, possibly uh...one hundred years...It would not be difficult Mein Fuehrer! Nuclear reactors could, heh...I'm sorry, Mr. President. Nuclear reactors could provide power almost indefinitely. Greenhouses could maintain plant life. Animals could be bred and slaughtered. A quick survey would have to be made of all the available mine sites in the country, but I would guess that dwelling space for several hundred thousands of our people could easily be provided.
      President: Well, I, I would hate to have to decide...who stays up and...who goes down.
      Strangelove: Well, that would not be necessary, Mr. President. It could easily be accomplished with a computer. And a computer could be set and programmed to accept factors from youth, health, sexual fertility, intelligence, and a cross-section of necessary skills. Of course, it would be absolutely vital that our top government and military men be included to foster and impart the required principles of leadership and tradition. Naturally, they would breed prodigiously, eh? There would be much time, and little to do. Ha, ha. But ah, with the proper breeding techniques and a ratio of say, ten females to each male, I would guess that they could then work their way back to the present Gross National Product within say, twenty years.
      Turgidson: Doctor, you mentioned the ratio of ten women to each man. Now, wouldn't that necessitate the abandonment of the so-called monogamous sexual relationship, I mean, as far as men were concerned?
      Strangelove: Regrettably, yes. But it is, you know, a sacrifice required for the future of the human race. I hasten to add that since each man will be required to do prodigious...service along these lines, the women will have to be selected for their sexual characteristics which will have to be of a highly stimulating nature.
      Russian Ambassador: I must confess, you have an astonishingly good idea there, Doctor.

  2. New peace activist slogan: by Khaed · · Score: 5, Funny

    "Make cyberlove, not cyberwar!"

    1. Re:New peace activist slogan: by The+One+and+Only · · Score: 4, Funny

      I put on my robe and wizard's hat.

      --
      In Repressive Burma, it's not just your connection that dies. slashdot.org/comments.pl?sid=314547&cid=20819199
  3. Obvious safeguard by maharg · · Score: 4, Insightful

    don't connect the dam floodgate controller to the internet ?

    --

    $ strings FTP.EXE | grep Copyright
    @(#) Copyright (c) 1983 The Regents of the University of California.
    1. Re:Obvious safeguard by Anonymous Coward · · Score: 5, Funny

      Welcome to the whitehouse.gov administration panel, please enter your 6 digit password below:
      _ _ _ _ _ _

      Access granted! Hello Mr. President,

      would you like to...
      [1] Raise taxes
      [2] Open floodgates
      [3] Administrate the US Army
      [4] Launch nuclear warheads
      [5] Play online poker

    2. Re:Obvious safeguard by Anonymous Coward · · Score: 2, Funny

      Access granted! Hello Mr. President,
      would you like to...
      [1] Raise taxes
      [2] Open floodgates
      [3] Administrate the US Army
      [4] Launch nuclear warheads
      [5] Play online poker

      [6]Global Thermonuclear War
  4. Tickle Me Elmos transformed into killing machines by niceone · · Score: 2, Funny

    Now that would have made a good headline. It's directly from the article:

    microchip-controlled Tickle Me Elmos will be transformed into unstoppable killing machines

    (taken slightly out of context)

  5. Newspaper ad by suv4x4 · · Score: 4, Funny

    As the government is getting ready for the upcoming cyberwar, the following ad was noticed in a local newspaper:

    We're looking for a young man named John Connor, to lead our efforts in the war against the machines. We offer $1000 to anyone who has any substancial information in discovering his location. If you can help, please dial 1-800-ILL-BE-BACK.

        - The Government (it's not Terminator this time, I swear)

    1. Re:Newspaper ad by suv4x4 · · Score: 2, Funny

      The next day another ad was printed:

      This is The Government. We're warning you that Terminator seems to be posting newspaper ads looking for John Cohnor and presenting himself as The Government. Do NOT call him. The real Government would never post ads in a newspaper in a fashion like that.

      Hmm, wait a second. Bob, stop typing, let me call the general. Hello, General? I just realized, we can't type in a newspaper ad, that we'd never post in a newspaper ad, we'd look like damn morons. Uhuh. Uhuh.. Wait.. BOB I told you to STOP TYPING THAT!

    2. Re:Newspaper ad by suv4x4 · · Score: 4, Insightful

      How does it feel to reply to your own post?

      Makes me feel Slashdot had an edit post button, so I wouldn't have to ammend myself in an entire new post.

  6. The Need for an Enemy by segedunum · · Score: 3, Insightful

    Well, everyone needs a credible enemy to keep themselves in a job. I mean, what would all those government agencies do with their time? The whole thing is just playing peoples worst fears, and the scenarios they've got there are straight out of Die Hard......or that film Sandra Bullock was in, and of course the all have no basis in reality.

    Bring back the Cold War, that's what I say, and it looks as though they are. This whole terrorism thing just isn't working out ;-).

    1. Re:The Need for an Enemy by Timesprout · · Score: 2, Informative

      This whole terrorism thing just isn't working out
      Well even the dummies are starting to put 2 and 2 together now over the whole 'terrorist global domination' charade and 'Cyber terrorists' are a ready made replacement in terms of fear mongering. Another vague, unknown threat that could be anywhere and somehow capable of causing immense destruction and loss of life at any given moment.
      --
      Do not try to read the dupe, thats impossible. Instead, only try to realize the truth
      What truth?
      There is no dupe
  7. Ladies and Gentlemen, Start Your Memes! by ettlz · · Score: 3, Funny

    In 2007, cyberwar was beginning.

    1. Re:Ladies and Gentlemen, Start Your Memes! by Anonymous Coward · · Score: 2, Funny

      What happen?
      Somebody set us up teh hax!

  8. always a war by had3z · · Score: 5, Insightful

    Why is it that america is always preparing for a war? a war on 'terrer', a cyberwar, a war on drugs, a war on immigrants, a war on pirates, a war on guns. When is the last time america made peace?
    I guess big budgets need big reasons

    1. Re:always a war by suv4x4 · · Score: 4, Funny

      Why is it that america is always preparing for a war? a war on 'terrer', a cyberwar, a war on drugs, a war on immigrants, a war on pirates, a war on guns. When is the last time america made peace?

      Amen. Let's declare war on war!

    2. Re:always a war by GooberToo · · Score: 4, Insightful

      Why is it that america is always preparing for a war?

      Um...perhaps because it's the smart thing to do? Only an idiot wouldn't prepare.

      You see, any country that has two nickles to rub together makes preparations to keep their two nickles. The reason is simple. Someone with only one nickle or maybe someone with two nickles that would like to have four, may decide to come take your two nickles. So you have a choice. One, give your two nickles up tomorrow (it will happen), or be in a position where it will cost someone three nickles to take your two.

      Perhaps you've heard, "Hope for the best. Plan for the worst." Only an idiot running a country wouldn't do that.

    3. Re:always a war by Anonymous Coward · · Score: 2, Insightful

      Of course, centralized power is what gives birth to war in the first place. Without a centralized power to plan and conduct war -- funded through coercive means -- how could war ever come to be? Individuals can form a militia (voluntarily-supported army) for purposes of self-defense, but never could a militia be used for offense, i.e. attacking peaceful groups of people. Who would pay for it? I sure wouldn't -- I'm a peaceful individual. You might find a few nutcases willing to go along, but an entire army? You'd have to collect your revenue by force, meaning taxes.

      Every single war that has ever been conducted has been supported through coercive means -- government -- rather than voluntary means.

      Now you could argue that since the world today is dominated by centralized power, a standing army is necessary to prevent the inevitable attack. And you may be right. But perhaps it would be wise to remember that as history shows, the power elite who make their fortunes on centralized power aren't quite as interested in protecting you as they are themselves.

  9. Re:Obvious safeguard - not so safe by ancientt · · Score: 3, Interesting

    Back in the late '90s I was infected by my first virus. I had never connected to the internet, I had just used the library and school computers. Somehow, I still managed to get a virus on my floppy diskette.

    I don't think it is unlikely that there are people who hook their laptops up to their work network, and I suspect it is even more likely that people plug in a floppy/thumbdrive/cdrom from home. I don't doubt that it would be safer to stay disconnected from the Internet, but a handcrafted virus would be far more likely to avoid detection by most antivirus and probably accomplish just as much in a hacker war. It would have to be a targeted program, but that is really the point isn't it, that hackers could be targeting networks that are supposed to be secured. Of course, it probably doesn't help security that they probably assume their network is safe.

    --
    B) Eliminate all the stupid users. This is frowned upon by society.
  10. It's not just the Internet by vtcodger · · Score: 4, Interesting

    ***Isn't this blown out of proportion, again?***

    Probably not out of proportion. The military has separate secure communications, but civil society doesn't. And many of our key networks aren't exactly robust. We've had incidents in the past of phone networks going down because of bad software upgrades to switches. And of power distribution networks going down for no very good reason and taking many hours to get back up. And satellites going out.

    So what happens when a technically savvy bunch of folks with a point to make starts off by hijacking Microsoft Update to zombiate millions of PCs, uses other update services to brick all sorts of devices, then simultaneously goes after the DNS servers; North American power grid controls; and every satellite link they have previously found a vulnerability in? What if they can take down major parts of the cell phone network? Probably they can DOS the financial service network providers if they can't hack into them -- No functioning ATMs and likely no functioning banks and likely few functioning stores of any kind. And they reprogram a lot of the nation's traffic signals to turn all lights green permanently. They do the same for the railroads. And they turn off the natural gas distribution system -- in January. And they shut down the aquaduct pumping stations feeding Southern California. ... etc, etc, etc. And finally, they shut down as much of the phone system as they can get to.

    A serious attack by a technically savvy attacker with significant resources and a good plan can very likely do most of those things and a great many more.

    If an attacker can do even a quarter of that, it'd take any industrial country a week to get back up after a fashion, and months to really get things back under control. So, no, it's probably not blown out of proportion.

    ***I mean who the FUCK would be stupid enough to have the controls for a Dam connected to the internet?***

    What is the cheapest and most cost effective way to control a remote power facility? And who says cyber attacks are limited to the Internet? If your dam is 300 miles away, you're going to need remote access -- at least for monitoring and quite likely for command and control. Seems to me like most, maybe all, of the technologies to do that -- internet, phone network, satellite, radio links, etc--are open to interception and attack. Even if you can't break into the control link, you likely can deny service in one way or another.

    --
    You can't see ANYTHING from a car, You've got to get out of the goddamned contraption and walk...Edward Abbey
    1. Re:It's not just the Internet by zmollusc · · Score: 4, Funny

      If the attackers want to maximise chaos, they will leave the traffic signals functioning normally.

      --
      They whose government reduces their essential liberties for temporary security, receive neither liberty nor security.
    2. Re:It's not just the Internet by MisterSquid · · Score: 2, Funny

      A serious attack by a technically savvy attacker with significant resources and a good plan can very likely do most of those things and a great many more.

      William Gibson called and he's asking for Wintermute back.

      --
      blog
    3. Re:It's not just the Internet by mcrbids · · Score: 5, Interesting

      So what happens when a technically savvy bunch of folks with a point to make starts off by hijacking Microsoft Update to zombiate millions of PCs,

      What makes you think they have to hijack MS Update? It seems to be a problem right now, today. Anybody who thinks this is something new is clueless. It's a problem right now, today.

      A few things that can help:

      1) Stop using systems that are inherently flaky. (EG: MS Windows) Move on to something that's proven to be resistant to viruses and the like. MacOSX, Linux, BSD, and other *nix variants are a good bet for the immediate future, but I'd wager that the best bet would be to revive DEC VMS! The security on that system is just simply awesome, and its reliability is second to none. Get somebody with chutzpah like Steve Jobs to make it work, and it would. Very well.

      2) Demand basic, reasonable security policies in force at ISPs. The federal govt should require that ISPs should use basic technologies to ensure that packets appear to come from the right network, malformed packets are rejected, etc. and it should also provide reasonable initial funding so that they can comply with this law without undue hardship.

      Another interesting thought - computers have gotten complex enough that the average person can no longer maintain them. So what if there was a way that the average person could outsource this administration to somebody else? There's quite a few ways this might work:

      A) The "pool service" model - some local techie shop periodically accesses your computer (either physically or remotely) and performs a routine maintenance, fixing security holes, ensuring updates are done, performing backups, etc.

      B) The "terminal" model - rather than store all your data/files on your local machine, your local machine becomes a dummy terminal, and you access your data and programs remotely. Something like the "terminal" that was common on mini and mainframes in the 1980s. Think Google office? This may be where Microsoft goes with their 'Windows Live' service, and where Linux goes routinely with X11.

      C) The "Updater" model - almost in place now, you pay a subscription fee to have software downloaded automagically that takes care of security issues. The main point here is that for this to work, it has to provide a strong assurance of quality, which this does not.

      Man, got windy on this post. Hope you enjoyed it!

      --
      I have no problem with your religion until you decide it's reason to deprive others of the truth.
    4. Re:It's not just the Internet by djmcmath · · Score: 5, Insightful

      OP is right, and he's optimistic about our defenses. Even the military practices "network security" at only a childish level. Most users have no clue how security works, and our military's network security training is horribly remiss.

      And of course, the OP only outlined a few attacks that can be conducted from the safety of an office somewhere remotely. We face an enemy who isn't at all afraid to blow stuff up, even if it means the explosives are personally delivered. Anyone take a look at the physical security on a dam recently? Storage sites for nuclear waste? Ferries, busses, trains?

      We are ripe for attack from a small team of well-funded and determined enemies, and we're not doing enough to prepare for it.

  11. Mind yo businez by ancientt · · Score: 3, Insightful

    That's right, because we all know that bullies only beat up other bullies. </sarcasm>>

    I love that people assume that the US is a target because of it's actions. I wonder if these are the same people that assume that Microsoft gets hacked because it is an 'evil' company. Let me say it plainly: The US is a target because the US has a lot of money and influence. Microsoft is a target because they have a large number of users. There may be thousands of other reasons, but that is the real reason there is such a disparity in attacks against the two. I am not saying that MS shouldn't be a moral business or that the US shouldn't improve it's interactions in the world, I'm just saying that doing either one will not make a significant difference in the number of attacks.

    Both have a need to do the same thing too, actually. They need to improve security and do it in such a way that it doesn't harm their base.

    --
    B) Eliminate all the stupid users. This is frowned upon by society.
  12. Disaster contingency planning by zmollusc · · Score: 2, Funny

    Can we agree on a flag to wave so that, once the 3vi1 h4xx0rs have destroyed all the intarnets, we can signal to others in visual range 'willing to trade pr0n dvdroms via sneakernet'? Maybe any suitably encrusted piece of fabric?

    --
    They whose government reduces their essential liberties for temporary security, receive neither liberty nor security.
  13. Born to Lose by Doc+Ruby · · Score: 4, Insightful

    Every US "Cybersecurity Czar" has quit in disgust. The Homeland Security agency can't even find someone to run the office, because it's a total joke.

    Meanwhile, the US has already been under siege by China in a full-blown cyberwar for several years.

    It's cheap to attack the US tech infrastructure, and expensive to defend against it. That's what asymmetric warfare, like terrorism, is all about. So 6 years into Bush's Terror War, and the government is still preparing to get started, while our enemies just surge around us.

    --

    --
    make install -not war

  14. Stupid-wordism by SoapBox17 · · Score: 2, Interesting

    "Hactivist" is a perfectly cromulent word, right? No, not really. I really despise this weird need everyone has to create new words. He already have perfectly good words, like "hacker", "activist" and "loser kids who want to feel powerful." Why anyone felt the need to create another buzz word is beyond me. This one is going right on the top of my list.

  15. Slight factual error in summary by ja · · Score: 2, Informative

    The summary says that Estonia wanted to "remove Soviet monuments", which is an excaggeration. The monument in question was moved to a less prominent place, which is kind of understandable since the Soviet era of Estonia isn't regarded much higher than, say the Nazi occupation of places like Denmark or The Netherlands ...

    The important thing to remember here is that the monument is still visible for those who wish to pay their respect to their ancestors. The monument is not, and never was, removed.

    --

    send + more == money? ...
  16. Re:Humans by ardor · · Score: 2, Interesting

    The only way to prevent war is to prevent the existence of more than one opinion.
    So, a hive mind would end the wars.
    But would this be really better?

    --
    This sig does not contain any SCO code.
  17. PLAN FOR ACTION by allanc · · Score: 4, Funny

    Okay, this is serious, and the US could be in serious danger. Here's my plan for action to make sure we can come through a potential cyber-war victorious:

    1. "Security through Conformity": Standardize on exactly one platform. Make sure everyone in government is using it. That way, if we discover a gaping security hole in that platform, we only have to patch one type of system. Homogeneity is the key.
    2. We need to put our trust in professionals. That one platform should definitely be Microsoft Windows. Sure, having people from all over the world looking for bugs might be quicker and more effective, but that also means that people from all over the world have the potential to find a security hole, but we have no clear target to blame for that security hole. And don't forget that backdoor that was almost slipped into Linux (though, fortunately, caught before it got into source control because of all of the people able to look at it)! We wouldn't have to worry about that with Microsoft Windows
    3. Don't leave computer decisions in the hands of long-haired computer geeks who spend all day working with technology. They tend to have decidedly leftist--if not communist!--leanings. All IT decisions for the US government should be made by the people best qualified to make them: Career bureaucrats.

  18. Re:Remember the big eastern brown out? by kevlarboots · · Score: 2

    "During that time, one of the nuclear reactors that shutdown was found to have numerous Windows based computers connected to the Internet." If: you discover the real causes of the event: http://en.wikipedia.org/wiki/Northeast_Blackout_of _2003#Causes. Then: you might not post such an uninformed and leading statement that can be so easily dismissed by those of us who work in the industry.

  19. Ahhhh, Now I understand about paying taxes on .... by 3seas · · Score: 2, Insightful

    ....virtual goods.

    They can use the virtual taxes to pay for the virtual war (cyberwar) defense.

    http://politics.slashdot.org/article.pl?sid=07/06/ 23/2055244

  20. Cyber Cyber Cyber by gumpish · · Score: 3, Funny

    Can't they call it "Digital Warfare" or "Internet Warfare"?

    "Cyber" is so 1990's... anything that inserts it into the language more often is a nuisance. Can you imagine if it gradually became a synonym for "good"?

    Dude, that pizza was totally cyber!

    Ugh...

  21. Re:Hacktivists!? by Dogtanian · · Score: 2, Insightful

    Folks,if you catch your kid engaging in "hactivism" or using words like "politically correct" Flamebait? Sure. But badly-constructed flamebait- the only people who use the expression "politically correct" are those attacking the concept.

    In fact, I'd go so far as to say that "political correctness" only ever really existed as a convenient strawman caricature, useful for smearing anything remotely smacking of "liberal" or left wing views.
    --
    "Slashdot - News and Chat Sites Deviant". (Click "homepage" link above for details).
  22. SECURE THE PROTOCOLS!!! by Spy+der+Mann · · Score: 4, Insightful

    Just fix the darn protocols, dammit. It's been a year since Blue Security was taken down by PharmaMaster and NOBODY has done ANYTHING to prevent any subsequent DNS amplification attacks from happening.

    If ISPs at least blocked forged-ip packets from exiting them, then THAT would be a nice start.

  23. A word from the front lines by AB3A · · Score: 4, Informative

    I am a registered professional controls engineer. I design and manage a large SCADA system. I'm also a member of the SP-99 standards committee (the ISA standard for industrial control system security).

    Industrial Control System Security is the subject of many books (with many more on the way), security committees, and even pending regulation. I could spend a long time trying to explain why things are the way they are. Here's an overview of the issue:

    1) SCADA systems started out in isolation. Most were never designed for internet access and many were designed without any thought to security because there is a more important concern: Reliability and performance.

    2) Office folks got wind of what information could be had from SCADA systems and the next thing that happened were a mass of people clamoring for the data. However, very few gave much thought to how that data could be extracted securely without affecting the reliability or performance of the system. As a result, there are many security compromises.

    3) It's not easy to retrofit security in to an existing SCADA system. It would be like putting seat belts and air-bags on a Ford Model T. Such measures will help, but what is really needed is a re-engineering of the whole system.

    4) Many of the protocols we use every day live in carefully validated embedded systems. You can't just "update" them without digging in to a morass of other embedded systems issues, in addition to the protocol itself, you have issues of performance and expected behavior. For this reason, updates of embedded firmware are rare.

    5) SCADA systems live for a long time. Typical lifetimes are at least 10 years for the field devices and five years for the control room software and hardware. These configurations are carefully validated (a very tedious and expensive process), so companies are loath to upgrade them unless there is a very good reason to do so.

    I can go on, but that's should give you a taste of what the situation is.

    Now for the reality of interational red-teams. Yes, they exist. The US has them too. I don't design for a red team. First, that would require very frequent software upgrades, something which I've already explained is not feasible for most SCADA system operators. Second, we opt for defense in depth. We try to segment our systems so that they fail in to smaller peices which are semi-autonomous in themselves. They won't be as efficient, but they will continue to work. And finally, in case you hadn't noticed, we design our physical security to eliminate the casual vandal, not the determined para-military group. The cost of going fully secure is so high that nobody would be willing to pay for it.

    At the utility where I work, we keep our SCADA system carefully shielded behind firewalls. Yet many other SCADA system managers do not understand the security issues because they're not IT savvy. Conversely, most IT staffers in utilities and manufacturing companies do not understand what a SCADA really is and does. This is not just another app. The notion of a real time or even a near real time system is alien to most. Furthermore, there is no such thing as "rebooting" in this business. In most IT applications, restarting the application or rebooting the machine is routine. Not so in SCADA. If we restart, we often lose track of many critical on-going processses. You see in most IT applications, they are the whole system. With SCADA, there is a physical world of things going on with or without them. If you're not up and running all the time, you're probably going to miss something critical.

    Finally, opening dams by remote control isn't likely. We have dams where I work too. Even if we did open them by remote control (we open ours manually), the systems that we use are as far as possible from the internet, and even our office intranet. Yes, we can wash out parts of a town downstream if we're not careful. The operators of such dams are licensed and they must be very careful about how the

    --
    Nearly fifty percent of all graduates come from the bottom half of the class!
  24. neuromancer & ghost in the shell by VoidEngineer · · Score: 2, Insightful

    Seems to me like we're heading towards some distinctly neuromantic and ghost-in-the-shellish conflict scenarios. Makes sense, considering all the recent technology advancements. Japan is busy at work making their first Mech prototypes, MIT is busy making invisibility cloaks, Van-Eck phreaking devices have been around for ages, and the Russia mafia seems to be busy writing custom viruses. The thing to remember is that a 'cyberwar' would *not* simply be conducted by script-kiddie hackers in their moms basements. Sure, you might have to deal with botnet DDOS attacks, but that's probably the least worrisome scenario. To use the Dam floodgate scenario, consider a sneakernet type attack, where a special-ops actually *applies for a job* at said energy company which runs said Dam floodgates, and moles their way past the firewalls, so they can install a custom one-time virus. Afterwords, they get a nice million dollar bounty from the sponsoring enemy state. That's the espionage scenario. There are others. Toss in some helicopters, invisibility cloaks, van-eck phreaking devices, and emp pulse generators, and you've got yourself an arguably new class of special-ops. You might say, 'yeah, US enemies aren't ever going to get helicopters and those kind of forces onto US soil, so the US only needs to concern itself with remote attacks.' Granted, the US still has a big advantage of being relatively isolated here in North America, but I'm not so convinced. We do have embassies, consulates, and business partnerns all over the world, and most all of them have VPN connections outside the US. Networks make distances less relevant, so we could simply be attacked at one of our embassies or consulates. But I digress. The idea that I'm trying to communicate here, is that a 'cyberwar' isn't necessarily all digital, just as a computer isn't all digital (keyboards and monitors are analog). As such, there will be a sneakernet and analog element to any such 'cyberwars', which will probably involve special-ops using the latest technology to tap into networks, nab passwords, and cover their tracks, *in conjunction* with the crackers doing the cracking. All nicely laid out in neuromancer and ghost-in-the-shell. The specifics differ, but the general concept is spot on in both works. At least in my opinion.

  25. Re:Remember the big eastern brown out? by delvsional · · Score: 2

    Do you have ANY proof of that? That would be a violation of tech specs and as I recall that eastern brown out had nothing to do with a nuclear plant and everything to do with the way the grid was shabbily set up with bandaids.

    even having someone without a license (nuclear not driving) cause a change in power by manipulating something like a valve is a violation. You can't just service something whenever you want. there are strict controls in place.

    There are however systems connected to monitor certain things. They can in no way cause changes and yes even though i don't think it's such a good idea they are indirectly connected to the net. but remember that these systems can only monitor. They physically cannot cause changes

    http://www.theregister.co.uk/2003/08/20/slammer_wo rm_crashed_ohio_nuke/
    --
    Oh Crap, I'm an optimist.....
  26. Cyberattack Information Center by podz · · Score: 2

    I have put up a site a few months ago to start to track cyberattack related news, events, etc. I plan to build it out as I get more information, right now it's fairly basic. However, I hope that it will help someone who is looking for info. Cyber Attack Information Center -- podz

  27. Hacking the Media by Divebus · · Score: 2, Interesting

    The Joker laughing out of every TV and Radio in Gotham city would be a powerful psychological win and a plausible goal for a determined enemy. What if part of a cyber war campaign was designed to replace Podcasts, Music streams, VOD Movie services, CNN Video or any internet delivered media with a message from our enemy? Could they commandeer Internet connected set-top boxes deployed by Cable providers and replace what we see and hear?

    I was approached by some people recently who wanted to know exactly how someone could pull that off. By "some people", I mean someone who works with an unnamed National Security Agency of sorts. I shrugged it off at first, then thought of the potential impact. Eek. Does anyone in the media business even anticipate or have a strategy for combating such an attack?

    --

    Most of the stuff on /. won't survive first contact with facts.
  28. Sometimes a legitimate complaint: Racism. by TerranFury · · Score: 2, Interesting

    Flamebait? Sure. But badly-constructed flamebait- the only people who use the expression "politically correct" are those attacking the concept.

    Very true.

    In fact, I'd go so far as to say that "political correctness" only ever really existed as a convenient strawman caricature, useful for smearing anything remotely smacking of "liberal" or left wing views.

    Heh, I don't know: I'd always considered myself reasonably to the left, but... I was surprised to run into a bunch of socially-acceptable racial bigotry during college, and the only way I can think to characterize it, is as having been "ok" because it was "politically correct." And this is the real point of my post.

    What am I talking about? People complaining, over and over, about "rich white kids;" they'd use sneering language like "bastion of white privilege," repeat racial slurs like W.A.S.P. as though that was somehow acceptable (besides, at least get your facts straight: second-wave European immigrants were neither Anglo-Saxon nor Protestant), and harp on hundred-year-old European imperialism (as though they, going to an Ivy League school, were somehow victims thereof). This was insidious stuff, nothing more than socially-acceptable racism. And it wasn't just something that affected interactions with strangers; it infected friendships, sowing mistrust and contributing to the slow self-segregation that students settled into by senior year. Watching this happen was the saddest part of college for me.

    An example:

    I started out as good friends, my freshman year, with a Chinese-American girl, but by senior year this language had gotten even to her. In particular, she began to use the phrase "rich white kids" over and over -- never "spoiled rich kids" or "spoiled jerks;" always "rich white kids." In her case, there was irony written all over it, as (1) her father was a well-to-do doctor; (2) she had traveled all over the world at his expense; (3) I remember her being demonstrably shocked when one day I mentioned that I was responsible for paying for all of my own credit card bills ("What, you mean your parents don't pay them for you? Mine do!"); and (4) she'd had a number of important opportunities handed to her that she hadn't had to work for at all. It was a little infuriating to hear her, of all people, call someone else spoiled.

    It got worse with time. I remember one incident in particular: I was walking down the sidewalk with her and an African-American (male) friend of hers (and so an acquaintance of mine), and she was complaining that Barak Obama wasn't dark enough: that the Caucasian part of his ancestry polluted him. She said that his skin looked "like mud." It was then that this other guy and I started exchanging meaningful glances, and I spoke our shared thought, "So, I'm not sure how to say this, [her name], but... look: You're standing between a dark black guy and a pale white guy *holds out arm with forearm up*, and... you're complaining that people with skin tones in-between are ugly? [(Implication: Look at yourself.)]" (I never understood how the racial ideas she'd begun to develop could withstand even a drop of sarcasm: You'd have thought that their self-contradictoriness would have caused them to annihilate each other at the tiniest hint of ironic illumination.)

    A large part of the reason she was acting as she was at that time in particular was that she'd just broken up with another guy -- who, as always for her, was white. Now, the people you date are the people who get close to you and the people who cause you emotional pain, so it's easy to hate them and their groups -- hence the ubiquity of sexism -- so I understand, in part, how her anti-white sentiments had developed. But I don't think that this history of hers is the full explanation: I really think that the politically-correct norms on racial discourse had something to do with it too: She was using its language to justify her hate. Her pol