Slashdot Mirror


FBI Warns of Sweeping Global Threat To US Cybersecurity

GovIT Geek writes "The FBI's newly appointed chief of cyber security warned today that 'a couple dozen' countries are eager to hack US government, corporate, and military networks. While he refused to provide country-specific details, FBI Cyber Division Chief Shawn Henry told reporters at a roundtable that cooperation with foreign law enforcement is one of the Bureau's highest priorities and added the United States has had incredible success fostering overseas partnerships."

134 comments

  1. Dark days of paranoia and spying. by twitter · · Score: 4, Insightful

    'a couple dozen' countries are eager to hack U.S. government, corporate and military networks. While he refused to provide country-specific details

    Where have I heard that before? Oh yeah.

    While I cannot take the time to name all the men in the State Department who have been named as members of the Communist Party and members of a spy ring, I have here in my hand a list of 205.

    But the second quote happened at the beginning of a horrible paranoia based on a real external threat. We still have the apparatus of that paranoia, though most of it was outlawed in the late 1970s and the only credible external threat is now our largest trade partner and "most favorable nation." Today we have secret "terrorist" blacklists with more than a million names. Domestic spying, especially web based spying, has jumped to levels that would make the freedom loving senator from Wisconsin angry. Anti-death penalty and peace groups are among those watched. Shame, isn't it?

    Shoring up the nation's IT against spying is as easy as dumping the prevalent non free software used by most big dumb companies. This would also save the country hundreds of billions of dollars in licensing fees and other headaches unique to non free software. The problem is that it would make wiretapping very difficult or impossible.

    --

    Friends don't help friends install M$ junk.

    1. Re:Dark days of paranoia and spying. by HungryHobo · · Score: 5, Interesting

      FOSS software isn't immune, there have been some terrible security flaws which have gone unnoticed for a long time. Of course proprietry software has even more flaws but profits pay for a team of guys in nice suits to give powerpoint presentations on how good it is and take the head of purchasing out to dinner.

      I would be very surprised if there weren't a few NSA plants in the dev teams of some of the more popular linux distros. How hard would it really be for a tallented coder to slip in a few subtle flaws to be exploited later if he's on the dev team and in every other way does the job very well.

    2. Re:Dark days of paranoia and spying. by zappepcs · · Score: 5, Interesting

      I hope you are modded up handily.... what you say is the truth, and the only reason that such information makes the news. If govt. agencies were doing their job as prescribed, it would not be news. This is simply creating a new evil-doer to distract the minds of Americans while the government continues it's wholesale grab of liberties and Constitutional pinata frenzy.

      Mr Orwell would be happy to note that in 4 more years, most Americans will be on a terrorist watch list, augmented heartily by those signing up for unemployment benefits. How much farther down this rabbit hole must we go before government whistle blowers become folk heroes? Will our grandchildren hear stories of Babe the blue ox, superman, and joe whistleblower? I hope so.

    3. Re:Dark days of paranoia and spying. by Spazztastic · · Score: 1

      Shoring up the nation's IT against spying is as easy as dumping the prevalent non free software used by most big dumb companies.

      It's missing something along the lines of:

      This message has been brought to you by Symantec Corporation. Try our new Norton Internet Security for 30 days free!

      --
      Posts not to be taken literally. Almost everything is sarcasm.
    4. Re:Dark days of paranoia and spying. by Andr+T. · · Score: 1

      Ok, I'm not an American, but could this be a part of an effort to make the country remember the 'international threats' and remember how the Republicans handle the security issues 'better' than the Democrats?

      --

      Any life is made up of a single moment, the moment in which a man finds out, once and for all, who he is.

    5. Re:Dark days of paranoia and spying. by houstonbofh · · Score: 5, Insightful

      How much farther down this rabbit hole must we go before government whistle blowers become folk heroes? Will our grandchildren hear stories of Babe the blue ox, superman, and joe whistleblower? I hope so.

      I hope not! That means that whistle blowers are so rare that they must be celebrated. I hope they are more common than bus drivers.

    6. Re:Dark days of paranoia and spying. by ((hristopher+_-*-_-* · · Score: 1

      Shoring up the nation's IT against spying is as easy as dumping the prevalent non free software used by most big dumb companies. This would also save the country hundreds of billions of dollars in licensing fees and other headaches unique to non free software. The problem is that it would make wiretapping very difficult or impossible.

      Doing that would only stop the common 'script kiddie' type hacker from exploiting the nations IT (via pre-built tools and well documented methods), and even then only for a limited time. In effect it would prove to be more of a boon to 'serious' attempts to attack the nations business and military IT systems. FOSS software is swiss cheese for security, it's just that not many people eat it and therefore don't realise it has so many holes.

    7. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 0

      More than 140 byte comment from twitter? How did you do that?

    8. Re:Dark days of paranoia and spying. by somersault · · Score: 4, Insightful

      FOSS software is swiss cheese for security, it's just that not many people eat it and therefore don't realise it has so many holes.

      And gross generalisations are always wrong too! Like this one.

      It really depends on the project. Most obvious projects to look at: Apache, PGP, Linux, etc. Very widespread adoption, and nothing like 'swiss cheese' in terms of security. FOSS software can be amazingly secure with the right guidance.

      Twitter is making gross generalisations too, of course.

      A well conceptualised FOSS project can obviously be just as good as any well conceptualised cllosed source project. Popular Open Source projects will be able to have more developers looking over the code though, and are likely to thank people for disclosing security vulnerabilities, and patch them up quickly. Sometimes closed source vendors get really pissed off when people disclose vulnerabilities - even when they've been given a while to get a patch sorted out and have done nothing about it.

      --
      which is totally what she said
    9. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 1

      NSA infiltrated debian's openssl package maintanence?

    10. Re:Dark days of paranoia and spying. by Mister+Whirly · · Score: 3, Insightful

      Why need to be sly and plant agents? The NSA can just go to whatever corporation and say "We want this" and 9 times out of 10 the corporation will hand over whatever they are asking for without any hassle.

      --
      "But this one goes to 11!"
    11. Re:Dark days of paranoia and spying. by nschubach · · Score: 1

      Or, you have violated 235 of their (laws|patents) and they intend on receiving (taxes|royalties) for it from the (citizens|users) in order to properly fund their (job|development).

      --
      Every time I start to have faith in humanity, I ruin it by driving to work between 7 and 8 am.
    12. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 0

      Canada is the United States largest trading partner.

    13. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 0

      You do know, that there's an outside world to the US, right? :)

      In most other countries corporations usually don't just hand over data to a foreign agency if asked politely

    14. Re:Dark days of paranoia and spying. by Mister+Whirly · · Score: 1

      What? There is a world outside the US? When did this happen???

      Yes anonymous coward, I do know that. I was speaking about corporations within the US. Like all the major telcos and cell phone companies that did just hand over private data when asked - politely or not. Only 1 company asked if they were legally obligated to do so.

      --
      "But this one goes to 11!"
    15. Re:Dark days of paranoia and spying. by gstoddart · · Score: 1

      I hope not! That means that whistle blowers are so rare that they must be celebrated. I hope they are more common than bus drivers.

      God, I hope not. Because that would mean wrong-doing was so widespread as to be something we tune out and don't really pay any attention to.

      However, I wholeheartedly agree with your point.

      Cheers

      --
      Lost at C:>. Found at C.
    16. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 0

      Twitter got a +5 for saying that the US would be safe from cyber attacks by dumping Microsoft?

      Hey Twitter, (and everyone else) you do realize that the important US government servers are not windows based right? Otherwise why would the IT jobs require Red hat, HP-UX, AIX, and mainframe experience in order to get the job?

      The world does not revolve around Microsoft. Desktop OS, Microsoft has a lot. Important government servers, no.

    17. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 1, Interesting

      I'm guessing a new wave of sockpuppets. Its been long suggested he has some sockpuppets with good karma (where he doesn't act like an idiot) that he uses to mod himself up. Personally I think that is most likely the scenario, and the stance that twitter doesn't believe a damn word he writes.

      Even twitters most notorious foes think Twitter believes what he writes. I for one think he has even fooled them

    18. Re:Dark days of paranoia and spying. by easyTree · · Score: 3, Informative

      In most other countries corporations usually don't just hand over data to a foreign agency if asked politely

      Fortunately for the US, politeness isn't mandatory - they seem to find it quite easy to pressure a country to do whatever they like: http://www.theregister.co.uk/2006/06/19/us_pushes_sweden/ - *cough* assholes

    19. Re:Dark days of paranoia and spying. by Fluffeh · · Score: 2, Interesting

      Superman is on a list. So are all the other people who wear their undies on the outside. He is likely to be one of those sex offender types. Seriously. And Joe Whistleblower? He blew his last whistle trying to protest in a safe zone away from everyone else where the media couldn't have access to him.

      I really worry about the direction of America. For such a powerful country in the world, your government is really really managing to dick things up.

      --
      Moved to http://soylentnews.org/. You are invited to join us too!
    20. Re:Dark days of paranoia and spying. by mmwithpeanuts · · Score: 1

      You have a very interesting way of laying out. Funny how that instead of 2001 A Space Odyssey, we got 9-11-2001, oddly? Hal got together with Big Brother after 1984, realizing we weren't minding the storehouse of brains.

    21. Re:Dark days of paranoia and spying. by WhiteHorse-The+Origi · · Score: 1

      That would be FreeBSD... Just compile your own kernel and remove their backdoors.

    22. Re:Dark days of paranoia and spying. by Anonymous Coward · · Score: 0

      Somehow twitter somehow got past slashdot's "lameness filter" that also fails to filter out goatse... not a huge supprise.

    23. Re:Dark days of paranoia and spying. by teh+kurisu · · Score: 2, Funny

      Closed-source software is swiss cheese as well, but you're forced to eat it with your eyes closed, and this means that you can't see the holes.

      Cheese analogies are much more fun than car analogies!

    24. Re:Dark days of paranoia and spying. by HungryHobo · · Score: 1

      Show me an easy way to find the backdoors...

    25. Re:Dark days of paranoia and spying. by moogyboog · · Score: 1

      This just increases' paranoia and anxiety, what a waste of taxpayer dollars.

    26. Re:Dark days of paranoia and spying. by WhiteHorse-The+Origi · · Score: 1

      Just use tcpdump on a transparent firewall with stealth enabled. Combined with arpcop, you'll figure it out pretty fast. Then track the port down to a process/thread and see how it got started. For the "sneaking into unused bits on IP headers" version you'll have to look a little deeper into the packets and possibly verify source code and use signature verification.

      The easier way is to just read the all the kernel header options and turn off the ones that say NSA_BACKDOOR or something similar(e.g. undocumented header options). Not guaranteed to work, but easy.

    27. Re:Dark days of paranoia and spying. by WhiteHorse-The+Origi · · Score: 1

      If you've got an Apple, the backdoor is in the hardware so yer screwed.

    28. Re:Dark days of paranoia and spying. by HungryHobo · · Score: 1

      backdoor doesn't have to mean a port sitting open.
      It can be a weakness in the RNG, a constant in an encryption scheme etc.

      So ya, your idea for commenting out the NSA_BACKDOOR headders is the best one.

    29. Re:Dark days of paranoia and spying. by WhiteHorse-The+Origi · · Score: 1

      No, a weakness in the RNG or an encryption weakness would be spotted quickly. One can make a quick $10,000 just for spotting those...

    30. Re:Dark days of paranoia and spying. by symbolset · · Score: 1

      Twitter, I like you.

      I hope you have carefully considered your position here. The first rule of an revolutionary is plausible deniability.

      Times are changing. Everything here is well recorded. If you would continue in this vein I would recommend at least that you get some offshore hosting and anonymous accounts.

      Also, recommend you read Heinlein's early works.

      --
      Help stamp out iliturcy.
    31. Re:Dark days of paranoia and spying. by ((hristopher+_-*-_-* · · Score: 1

      Agreed.

      Without sarcasm, I should of added 'Nearly all' at the start of that line.

      And yes, any software with widespread adoption is much more likely to have built up it's immune system.

      Nearly all of FOSS software has very limited adoption.

    32. Re:Dark days of paranoia and spying. by HungryHobo · · Score: 1

      I really don't want to keep pointing at the debian fiasco because personally I really like open source but it's a perfect example of a big huge problem which wasn't spotted despite these things.

      Open source is better than closed but it isn't some magic bullet which fixes everything.

    33. Re:Dark days of paranoia and spying. by WhiteHorse-The+Origi · · Score: 1

      I think the fact that is WAS spotted speaks for open source more than against it. The mere fact that so many people use and develop it almost guarantees eventual peer-reviewing of code. What this means is that if it can happen in an open peer-reviewed product, it can happen in a closed peer-reviewed project. I hate to keep bringing up the Micro$oft fiasco...

      The only other backdoor that could be used without requiring a port is a hardware backdoor, such as in the Macs, NICs, certain processors, and certain routers. My personal favorite is the active jamming feature on the Motorola phones, hehe.

  2. What's a Cyber? by Anonymous Coward · · Score: 5, Funny

    I'm now worried that mine's at risk.

    1. Re:What's a Cyber? by Fred_A · · Score: 1

      I'm now worried that mine's at risk.

      That was my first question as well. At least I'm not in the US so maybe my cyber is safe.

      --

      May contain traces of nut.
      Made from the freshest electrons.
    2. Re:What's a Cyber? by Walpurgiss · · Score: 1

      Cyberspace is my guess, the topic field probably cut it off.

    3. Re:What's a Cyber? by internerdj · · Score: 1

      Don't worry no one wants to listen in on any of the /. crowd's cyber...

    4. Re:What's a Cyber? by xaxa · · Score: 1

      Help! Help! My subculture's at risk!

    5. Re:What's a Cyber? by Tetsujin · · Score: 2, Funny

      Don't worry no one wants to listen in on any of the /. crowd's cyber...

      A/S/L?

      --
      Bow-ties are cool.
    6. Re:What's a Cyber? by orclevegam · · Score: 2, Funny

      So long as it doesn't keep me from sending my internets I'm not worried. Now just the other day one of them companies dumped a tremendous amount of data in the tubes and it buried my internets. If you get some of that tremendous amount of data could you look through it and see if maybe one of my internets is stuck in there somewhere?

      --
      Curiosity was framed, Ignorance killed the cat.
    7. Re:What's a Cyber? by somersault · · Score: 1

      the topic field probably cut it off.

      Please. Most likely it was a stray lolcat.

      He's in ur cybers, stealin ur pace.

      --
      which is totally what she said
    8. Re:What's a Cyber? by Fred_A · · Score: 1

      No problem, I'll put my cyber on it right away!

      --

      May contain traces of nut.
      Made from the freshest electrons.
    9. Re:What's a Cyber? by Anonymous Coward · · Score: 0

      A/S/L?

      24/female/next cubicle over

    10. Re:What's a Cyber? by Anonymous Coward · · Score: 0

      *flapping hands*

      s-o-r-r-y!
      I d-o-n-t k-n-o-w
      A-m-e-r-i-c-a-n
      S-i-g-n
      L-a-n-g-u-a-g-e!

  3. no kidding? by Utini420 · · Score: 5, Funny

    News Flash: Guy in new job declares new job important!

    --
    A little inaccuracy sometimes saves tons of explanation.
    1. Re:no kidding? by gsslay · · Score: 1, Funny

      Don't mess with this guy. He has an army of cybermen ready to invade the planet!

      Well, either that, or a very silly job title.

    2. Re:no kidding? by whencanistop · · Score: 1

      Maybe his job is important, given all these studies showing that we are more at risk than ever. eg The recent report from the Georgia Tech Information Security Centre saying that all our security is way behind what the hackers use.

    3. Re:no kidding? by theaveng · · Score: 1

      News Flash:

      Do what they did on the Battlestar Galactica (don't use externally-connected networks), and you won't have to worry about being hacked by Cylons..... er, terrorists and spys.

      --
      FOX NEWS.com should be BANNED from television and internet. Have the Congress take it over and give us Truespeak.
    4. Re:no kidding? by Jesus_666 · · Score: 1

      To me it sounds like something from Megaman Battle Network. Actually, given the inanity of some of the laws recently passed in the USA it shouldn't suprise us to see Official Netbattler as a real job title soon...

      However, while I'd like to think that the FBI has dozens of snotty kids with utterly professional and capable navis on its payroll, most likely all they have are a couple HealNavis with one MiniBomb J each.

      --
      USE HOT GRITS WITH STATUE OF NATALIE PORTMAN (NAKED AND PETRIFIED)
    5. Re:no kidding? by Anonymous Coward · · Score: 0

      all our security is way behind what the hackers use.

      What? But we use all of the best that Microsoft has to offer!!!

    6. Re:no kidding? by gstoddart · · Score: 1

      News Flash: Guy in new job declares new job important!

      And, in an astonishing correlation, guy who has been in same job for over a decade decrees job pretty mundane.

      Coincidence? I think not!!

      Cheers

      --
      Lost at C:>. Found at C.
  4. Well... by grub · · Score: 2, Funny


    Don't worry, if McCain wins he'll make Joe the Plumber his special advisor on such issues.

    --
    Trolling is a art,
  5. Yay! More Security Theater!!! by Garrick68 · · Score: 5, Insightful

    and here come the cries from the government "Quick we pass these laws to protect us!!!" Yeah right...

    1. Re:Yay! More Security Theater!!! by morgan_greywolf · · Score: 1

      No. They will either A) wait until some major government site gets hacked or B) stage a fake 'cyber attack' on U.S. government infrastructure, and when everyone and their mother is inconvenienced or hurt in some way, then they'll ask for new laws. Which The U.S. populace will be all too willing to submit to.

      Sound familiar?

  6. how is this news? by Anonymous Coward · · Score: 0

    If this is news to you then you need to wake-up.

  7. They're threatening cybers? by KeithIrwin · · Score: 4, Funny

    Threats against cybers? Uh-oh. I've been cybering all morning. Heck, I even did cam to cam once. No global sweepers have threatened me yet, but now I'm scared. I hope they don't hurt me.

    1. Re:They're threatening cybers? by Anonymous Coward · · Score: 0

      Newsflash: Slashdotter moves out of his mother's basement to some stranger's attic.

  8. Um... by Timothy+Brownawell · · Score: 1

    So use protection.

    Or top truncating titles into something ambiguous, I guess.

  9. Cybers? by Digital+Vomit · · Score: 4, Funny

    Since when is it the FBI's mandate to protect online sex chatting?

    --
    Modern copyright is theft of culture from everyone and it retards the progress of the useful arts and sciences.
    1. Re:Cybers? by plasmacutter · · Score: 2

      it's part of their two-pronged attack against child exploitation.

      They will watch you cyber to assure there are no children involved, but assure protections so others don't watch you cyber.

      I hope your fetishes involve spectators : )

      --
      VLC FOR MAC IS DYING! IF YOU DEVELOP, PLEASE SAVE IT!!
    2. Re:Cybers? by Anonymous Coward · · Score: 0

      Since Cyber-Predators started crossing state lines.

  10. What... by cosmocain · · Score: 4, Insightful
    ...an abundant interview:

    . While he refused to provide country-specific details[...]

    He then hinted that an announcement[...]

    Henry would not comment in detail[...]

    He shied away from commenting[...]

    1. Re:What... by Anonymous Coward · · Score: 0

      ask sarah palin, she tell you the countries, shes an expert in all things foreign cos shes from alaska you know

  11. No duh... by cavis · · Score: 3, Informative

    So a newly appointed government official announces something that we in the network world have known for years and suddenly it is news? I think that anyone who has any amount of experience in computers would know this by now. If I had a dollar for every attack on my network from Asia, I'd take us all to lunch.

  12. Cybersecurity? by Anonymous Coward · · Score: 0

    I guess that's what the turboterrorists and hyperextremists are superthreatening to megaattack and ultrasuperdestabilize with their megaultrasupercyberweapons.

  13. Easier from the inside by MacColossus · · Score: 1

    "the United States has had incredible success fostering overseas partnerships." Of course they have. If you are friends and are given access to the US networks you don't have to hack. Far easier to shake a hand in a photo than it is to wait for a ssh keygen to work.

  14. Incredible Success by Anonymous Coward · · Score: 0

    United States has had incredible success fostering overseas partnerships.

    Ha ha! Aaaaahahaha! Heh. Heh... What?

  15. well, he would say that - wouldn't he? by petes_PoV · · Score: 4, Insightful
    what's the point of having a cyber-tzar if he (or she) is then going to turn around and tell you everything's fine?

    Of course he will talk up the threat - that's his job. Since there's no way that these intangibles can ever be measured, he's on pretty secure ground too. If no threats materialise it's because of his vigilance and the skill of his team - not because there were never any real threats to begin with.

    If a threat does turn into a real attack - well, he needs more money, powers and curtailed freedoms to ensure it doesn't happen again.

    --
    politicians are like babies' nappies: they should both be changed regularly and for the same reasons
    1. Re:well, he would say that - wouldn't he? by JCSoRocks · · Score: 2, Interesting

      I'm going to go cry in a corner because of how absolutely right you are and how horribly depressing that is. The last line in particular pretty much sums up the last 7 years.

      --
      You are using English. Please learn the difference between loose and lose; they're, there, and their; your and you're.
    2. Re:well, he would say that - wouldn't he? by plasmacutter · · Score: 1

      Since there's no way that these intangibles can ever be measured..

      What are you talking about?

      Don't you know the recording, software, and film industries lose hundreds of billions of trillions of dollars a year to p2p piracy?!!

      These things CAN be measured.. why just recently the chairman of the fed said a mere 700 billion dollars would fill the potholes in our credit industry!

      (for the million /whooshes about to happen .. /sarcasm)

      --
      VLC FOR MAC IS DYING! IF YOU DEVELOP, PLEASE SAVE IT!!
    3. Re:well, he would say that - wouldn't he? by Anonymous Coward · · Score: 0

      BINGO. In other news, the chief of drug prohibition reports that government needs another $10 billion to fight recreational drug use. While shockingly, the chief of agriculture unveals the immediate threat of food shortage which can be neatly solved by passing another few bilion through his hands?

      Let's call a spade a spade here. The people at the top of the power pyramid will always call for more government: more revenue, more power over the people, more military bases overseas, more control -- more business for them at the expense of you and me.

      How long is it going to take before people realize (or admit) that government works in self-interest, not "for the people" as they endlessly claim? How long is it going to take for people to realize that what is good for the business of government is nearly always bad for freedom and individual rights?

  16. Job Security 101 by mpapet · · Score: 3, Informative

    There is no doubt there are bad people that would like to do bad things to others in the world, but why anyone takes this kind of propaganda seriously is beyond me.

    It's more than likely the amount of funding he gets is directly proportional to the amount of fear mongering produced.

    --
    http://www.maxineudall.com/2010/02/should-economists-be-sued-for-malpractice.html
    1. Re:Job Security 101 by causality · · Score: 1

      There is no doubt there are bad people that would like to do bad things to others in the world, but why anyone takes this kind of propaganda seriously is beyond me.

      It's more than likely the amount of funding he gets is directly proportional to the amount of fear mongering produced.

      Not to mention, that "of course" this means that the only way to be "safe" is to increase the size and police power of government. Why, that's always the solution now that you've had problem and reaction! When we all learn the goose step, just think of how incredibly wonderfully SAFE we'll all be!

      --
      It is a miracle that curiosity survives formal education. - Einstein
    2. Re:Job Security 101 by Pros_n_Cons · · Score: 1

      There is no doubt there are bad people that would like to do bad things to others in the world, but why anyone takes this kind of propaganda seriously is beyond me.

      It's more than likely the amount of funding he gets is directly proportional to the amount of fear mongering produced.

      This is probably why you didn't hear much about terror attacks before 9/11 yet after the building goes down everyone screams its the governments fault for not telling us about these threats. Not everything is propaganda, sometimes people really do want your ass.

      --

      -- "of course thats just my opinion, I could be wrong." --Dennis Miller
  17. What you all just said... by Anonymous Coward · · Score: 1, Insightful

    FBI Cyber Division Chief says other countries are trying to hack in to their systems.. if we disband the government we won't have any threat!

    We win both ways.. we don't have the paranoid threat of having to deal with terrorists attacking "our government", nor do we have to worry about "our government" attacking us... again.

  18. It's on Topic! by pete-classic · · Score: 3, Funny

    Aight, I put on my robe and wizard hat.

    -Peter

  19. USAF Cyber-Command Demoted Relation by jznomad · · Score: 4, Informative

    http://defensesystems.com/Articles/2008/10/Air-Force-demotes-Cyberspace-Command.aspx The Air Force announced last week that it has backed off even further from its grand plan to establish a cyberspace command as the military entity primarily responsible for securing and conducting offensive operations in cyberspace. The Air Force launched a provisional Cyberspace Command more than a year ago and scheduled a formal command launch for Oct. 1. However, officials delayed that effort after the departures of Air Force Chief of Staff T. Michael "Buzz" Moseley and Air Force Secretary Michael Wynne, who were fired for incidents involving the mishandling of nuclear detonators and weapons.

    1. Re:USAF Cyber-Command Demoted Relation by jznomad · · Score: 1

      Also: http://www.fcw.com/online/news/154063-1.html The government officially has begun to formulate a national research and development agenda for âoegame-changing ideas" as part of the multiyear, multibillion-dollar, governmentwide effort to secure cyberspace through the Comprehensive National Cybersecurity Initiative (CNCI).

    2. Re:USAF Cyber-Command Demoted Relation by ColdWetDog · · Score: 1

      he Air Force announced last week that it has backed off even further from its grand plan to establish a cyberspace command as the military entity primarily responsible for securing and conducting offensive operations in cyberspace.

      The real reason they "delayed" that effort is because some twenty-something Captain told the old fogeys that the "space" term in "cyberspace" didn't mean what they thought it meant. They are now working on an "All your Space belong to us" concept - but it's taking a bit longer than planned.

      --
      Faster! Faster! Faster would be better!
  20. Was this followed by a request for more money? by NoNeeeed · · Score: 2, Insightful

    Nice way to get more budget, "OMG the terrorists are going to control our nukes from their iPhones!!!11!! You must give us lot of money to protect you".

    I know there are threats, and I know that a lot needs to be done about them, but this kind of scaremongering is getting boring after nearly a decade.

    This is a real problem, there is no need to exaggerate it. You use unsupported hyperbole at your peril, after a while no-one will take you seriously. Especially now, when budgets are under so much scrutiny.

    In many ways these financial problems could be great for civil liberties, constructing a surveillance society costs real money. Just take a look at the UK ID scheme, it will cost billions.

  21. Just come out and say it. by MikeRT · · Score: 1, Flamebait

    China is at the top of the list of countries that want to see us thrown on the trash heap of history. Feel better now? The biggest threat we face, practically speaking, is from people on our own soil.

    One of the major problems we face is Chinese nationals who are now "citizens" (quotes used to denote legal status with no inner patriotism) of the United States. Some of our biggest security violations on classified and controlled technologies have come from people of Chinese descent who have basically retained their loyalty to China, even though they carry citizenship.

    What do we do about this? I think the answer is pretty clear. Most Chinese who become Americans are loyal, so the clear answer is to just leave them alone and viciously punish people who trade in controlled technologies to foreign governments. If we executed a few people who sold classified warplane technology to foreign governments, it might make the filthy lucre their governments are offering look nowhere near as enticing.

    Most Americans just don't get that in much of the world, ethnicity actually means something pretty profound to the average person. It's one of biggest reasons why people on our own soil betray our trust to foreign governments. The only way we can override that in most cases is to stop being so limp-wristed toward people who break our espionage and export laws, and start seriously ruining the lives of people who break these laws.

    The beauty of a deterrence policy based on the certainty that betraying any technology classified Secret or higher will carry at least life in prison without parole, is that it will make preventative surveillance less necessary.

    1. Re:Just come out and say it. by Anonymous Coward · · Score: 0

      Someone finally gets it! Thank you!

    2. Re:Just come out and say it. by 1u3hr · · Score: 0, Troll
      in much of the world, ethnicity actually means something pretty profound to the average person. It's one of biggest reasons why people on our own soil betray our trust to foreign governments

      So, David Duke posts on Slashdot?

      Skin colour aside, consider that recent immigrants quite likely have close family members back in the old country, where they can be rewarded, or punished, depending on the immigrants' response to appeals from their original government.

    3. Re:Just come out and say it. by Duradin · · Score: 1

      The "worst" part about free societies is that it isn't always easy being a citizen of one. The "easier" it gets the less free the society.

      You've got to be willing to take a blow, usually the first one, and not overreact.

      You've got to let the rights that protect you protect the people you hate.

      Strength is not going medieval on someone who hurt you.

      And thank you for reminding me what a scary word loyalty truly is.

    4. Re:Just come out and say it. by Anonymous Coward · · Score: 0

      So which country are you spying for?

    5. Re:Just come out and say it. by piemcfly · · Score: 1

      China is at the top of the list of countries that want to see us thrown on the trash heap of history

      Can we please stop telling the Chinese how much they hate the USA, before they actually start to believe it themselves?

    6. Re:Just come out and say it. by CodeBuster · · Score: 1

      And thank you for reminding me what a scary word loyalty truly is.

      I seem to recall that the ceremonial daggers carried by the Nazi SS in WWII bore the inscription "My honor is loyalty" on the blade.

  22. Cybers? by Gothmolly · · Score: 2, Funny

    Al Qaeda is on AOL chat rooms asking A/S/L ?

    --
    I want to delete my account but Slashdot doesn't allow it.
  23. FUD by whisper_jeff · · Score: 1

    Anyone who has trouble explaining exactly what "FUD" is to a parent or whatnot should just send them to this tidbit - it's about as clear-cut an example of Fear, Uncertainty, and Doubt that I've ever seen...

  24. Maybe they're vulnerable by HalAtWork · · Score: 1

    I'm sure there's hackers trying to break in to the FBI's computing system all the time, it's just now it's probably gotten so easy and there are so many holes and loose ends to tie up with security, and even if there are people who know what they're doing there, there is no real grand plan for their computer system or security and nobobdy knows how to bring it all together. They're probably also concerned with illegally hacking into other nations' computers and our own. Why should we care about what's wrong with their security (I mean, there are a few things we want to know as well), and how could they even fix it anyway?

    1. Re:Maybe they're vulnerable by hesaigo999ca · · Score: 1

      If the FBI had a system to access, you would not see it on the internet, it would be a separate fiber line, which only certain field agents would have the tools to access. We are talking about national security, they would not take a chance on putting their network accessible over the internet

    2. Re:Maybe they're vulnerable by Anonymous Coward · · Score: 0

      Key words: If the FBI had a system to access.

      Last I heard, they're quite traditional and, well.. last-century. Could be deliberate misinformation.

  25. The penalty for threatening cybers by snarfies · · Score: 4, Funny

    You are inferior. Man will be reborn as Cybermen, but you will perish under maximum deletion. Delete, delete, delete, DELETE!

    1. Re:The penalty for threatening cybers by Anonymous Coward · · Score: 0

      Cybermen are inferior to Daleks! Daleks are supreme species. Exterminate! Exterminate!

  26. Title Misprint - They Mean Cybrans by AioKits · · Score: 1

    What they ment to say was that any US Cybrans would be at risk. If you are Aeon or UEF, you have nothing to worry about.

    Carry on Supreme Commander!

    --
    "Quote me as saying I was mis-quoted." -Groucho Marx
  27. Monkeys should have not computers by Anonymous Coward · · Score: 0

    They are not Christians, and the Iternete belongs to GOD. Jesurs!

  28. Control Data? by skabob · · Score: 1

    Sheesh, I didn't know there were that many CDC Cybers out there still in use to cause panic.

  29. I'm nervous that he would mention corporate nets by Sloppy · · Score: 4, Insightful

    The implication of a government person saying we have a problem, is that the government should do something about it. And for the military and other government networks, that's fine.

    But why do we ("we" being the government) need to do anything to protect corporate (or any other private) computers? The owner/operators of computers can protect them on their own. Just stop running foreign code.

    This isn't like physical security, where, say, IBM can't (and shouldn't have the means) to protect themselves from nuclear ICBM attack. It makes sense to put government in charge of securing the country against certain threats, and that job (if stated broadly enough) is arguably the only reason we need government to exist at all. But cyber-security isn't one of those situations, because individuals and groups can protect themselves, without putting anyone else at risk.

    --
    As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
  30. Cyber Division by Anonymous Coward · · Score: 0

    Stay tuned for FBI: Cyber Division - coming this fall to FOX.

  31. The biggest to the U.S. is by Anonymous Coward · · Score: 0

    this criminal.

    Cordially,

    ÐsÐÐÐÐ¾Ñ ÐÑÐÑfÑ
    Slashdot needs to accept other alphabets. Morons.

  32. Damn right! by GameboyRMH · · Score: 2, Funny

    That guy knows how to fix a series of tubes!

    USA! USA! USA!

    --
    "When information is power, privacy is freedom" - Jah-Wren Ryel
  33. Re:I'm nervous that he would mention corporate net by Thorizdin · · Score: 4, Informative

    The implication of a government person saying we have a problem, is that the government should do something about it. And for the military and other government networks, that's fine.

    But why do we ("we" being the government) need to do anything to protect corporate (or any other private) computers? The owner/operators of computers can protect them on their own. Just stop running foreign code.

    This isn't like physical security, where, say, IBM can't (and shouldn't have the means) to protect themselves from nuclear ICBM attack. It makes sense to put government in charge of securing the country against certain threats, and that job (if stated broadly enough) is arguably the only reason we need government to exist at all. But cyber-security isn't one of those situations, because individuals and groups can protect themselves, without putting anyone else at risk.

    If you're premise was correct your position would have some merit, but because you're probably thinking very narrowly about the problem you've missed some very big issues.

    First, much of our infrastructure is run by private companies. Think about how effective inter agency communication isn't when phones and cell phones don't work (think Katrina and 9-11). Our utilities are almost completely under private control and that includes nuclear reactors, dams, and the electrical grid. The Nuclear Regulatory Commission sets standards for security, but computer systems and security (both virtual and real) are all handled by private companies, most often contractors.

    Second, even non-infrastructure companies can be hugely disruptive. Think what could happen if someone gained control over the automated systems that report on the prices of stocks, commodities, bonds, and other financial mechanisms. Creating a run on a bank, Wall Street, or a huge fluctuations in the value of the Dollar would be trivial if someone just had access for a short time period. If someone had undetected access and a more subtle mindset the damage could be both much longer term and much worse.

    Finally, even companies and organizations that don't control infrastructure or financial systems can have a huge impact if their systems are compromised. Your example of IBM's being able to protect themselves without risk to others is also critically flawed. Last year IBM did $1.43 billion in consulting work for the US government. (1.4% of total 2007 revenue) You don't suppose that in that some of the work is classified? I know some of it is and further, given continued access, I could see the new stuff as the contracts are awarded to Big Blue. This also ignores the disruption that they could create because they are a well trusted ASN on the Internet. The sheer number of workstations and servers they have would also make them attractive to operate as part of a bot net.

    In short, there are lots of ways that any large company can hurt the rest of us if they aren't responsible with their security. Now, I'm not buying into the idea that the government being responsible for everyone's network security, they couldn't if they wanted to, but right now network security is something that a lot of companies haven't taken seriously and they _can_ harm us with their negligence.

  34. zOMG!!!1!!!one by Anonymous Coward · · Score: 0

    You mean to tell me that somewhere in the world there are nations that aren't fond of America?! This is big news; we'd better firewall the cybers with extra Norton's or they're likely to steal all of our webs.

  35. Countries? by gmuslera · · Score: 2, Interesting

    First worry about individuals and groups of individuals, that are already doing some damage. Worms, spam, virus, botnets, exploiting vulnerabilities, social engineering, phishing... you dont need to have a country's government behind those threats.

    And part of the solution is not "attacking", but defending having things right in your side. Detect infected and vulnerable sites and pcs and warn/educate owners/vendors about that, as they are the perfect source for i.e. a big DDos or other kind of attacks. That US is the biggest source of spam and probably botnet activity of the world is a good warning sign.

    1. Re:Countries? by Anonymous Coward · · Score: 0

      "And part of the solution is not "attacking", but defending having things right in your side. Detect infected and vulnerable sites and pcs and warn/educate owners/vendors about that, as they are the perfect source for i.e. a big DDos or other kind of attacks. That US is the biggest source of spam and probably botnet activity of the world is a good warning sign." - by gmuslera (3436) on Thursday October 16, @01:30PM (#25402367) Homepage

      Agreed, 110% - &, if ISP/BSP's can detect who is sending out spam, etc. et al (& they can)?

      Well, you inform those affected people.

      Then, you also "turn them on" to material such as this ->

      HOW TO SECURE Windows 2000/XP/Server 2003 & even VISTA, plus, make it "fun-to-do", via CIS Tool Guidance (& more beyond its advisements, based on industry 'best practices' for security):

      http://www.tcmagazine.com/forums/index.php?s=1a53fb234dde18097a6daf03ab149062&showtopic=2662

      (Because it works, & shows ordinary people how to defend themselves, by using an easy to use tool (CIS Tool), AND, some simple ideas to follow & use (the hard part, too many people use javascript, the main infection vector used nowadays in 90% of the attacks out there (in combination w/ IFrames + plugins) & just going to SECUNIA.COM &/or SECURITYFOCUS.COM can show anybody that much!) to protect themselves!)

      APK

  36. Re:I'm nervous that he would mention corporate net by Sloppy · · Score: 2, Interesting

    Your example of IBM's being able to protect themselves without risk to others is also critically flawed. Last year IBM did $1.43 billion in consulting work for the US government. (1.4% of total 2007 revenue) You don't suppose that in that some of the work is classified? I know some of it is and further, given continued access, I could see the new stuff as the contracts are awarded to Big Blue.

    Fair enough on that. I'm ok with government demanding authority (or certain standards) over private computer security as a term in government contracts. As long as someone can Just Say No (i.e. don't take the lucrative government business) then surrendering this power isn't hurting anyone.

    Infrastructure that is already high-regulated, most of which has some sort of monopoly given by government? Hmm.. ok there too, for the same reason.

    --
    As copyright owner of this comment, I authorize everyone to defeat any technological measure which limits access to it.
  37. Re:oblig by Anonymous Coward · · Score: 0

    rofl, troll? wtf kind of moderating are we getting these days?

  38. Re: That's a load of BS. by Anonymous Coward · · Score: 0

    Riiiiggghhht. And then all the focus of the "evil-doers" gets put on those oh-so-free operating systems and we'll be right back in the same boat.

    People and businesses need to hammer all of the the OS manufacturers and get them to fix their damn software.

    Free systems aren't any better, it's just that no one is using them to the same degree. They ALL stink as far as security is concerned.

  39. Re:I'm nervous that he would mention corporate net by Jherek+Carnelian · · Score: 2, Insightful

    much of our infrastructure is run by private companies.

    So, basically privatization leads to nationalization?
    Interesting.

  40. More scareware by Anonymous Coward · · Score: 0

    was wondering when we'd get our daily dose. please pass it down, i'm starting to feel a little better about things and don't really want to....

  41. the FBI has discovered "D'OH!" by swschrad · · Score: 1

    or maybe "duh."

    enemies who want to get you in the weak points. who woulda thought it?

    any bilged-out 2nd lieutanant would appear to be smarter than the head of cyber security in this regard, since the military academies exist to study this stuff. and the first place to start is not to put critical systems on the web, maybe, you think?

    this fella probably wants to go back to tubes to avoid EMP.

    --
    if this is supposed to be a new economy, how come they still want my old fashioned money?
  42. worry more about feds then hackers by Anonymous Coward · · Score: 0

    Fu*k the FEDS! There the Evil ones. There doing more damage to the USA then any other foreign nation, or hacker. Asswipes.

  43. I say go ahead.. by k1e0x · · Score: 1

    Soo people want to Hack the government, alright.. well your chief of the FBI, you better get on that.. why would I care if they want to hack the FBI.

    If I were president I would send every FBI, DHS, CIA, NSA, TSA, and DEA agent in America to guard ANWR Alaska against "terrorism".

    --
    Bringing liberty to the masses. - http://freetalklive.com/
  44. twitter linux troll, mod down by Anonymous Coward · · Score: 0

    n/t

  45. Stop modding trolls up by Anonymous Coward · · Score: 0
  46. Maybe some good... by Anonymous Coward · · Score: 0

    Maybe we should let these "hackers" do their best, after all, what's the worst they could do? Fix our government? I don't see how they can do anymore damage then has already been done!

  47. This is news? by Jimmyisikura · · Score: 1

    First off, MOST countries don't like us. That comes with distrust as well. By hacking into our stuff they learn of our plans/security layout. So lets look at this point by point.
    (1) There is a something called the internet.

    (2) There are people who know how to store data made available on the internet.

    (3) People know how to steal data from places where the internet is used.

    (4) People are VERY good at #3.

    (5) For every security tool we have put in, they have a tool that will get past it in time.

    Now given all of that, how are we surprised people want/are trying to break into our databases?

  48. Billions of people... by Alex+Belits · · Score: 1

    ...are eager to punch George W. Bush in the face. News at 11.

    --
    Contrary to the popular belief, there indeed is no God.
  49. Xenophobia:1 Tolerance: 0 by KudyardRipling · · Score: 1

    Most Americans just don't get that in much of the world, ethnicity actually means something pretty profound to the average person.

    This is precisely why ethnic slurs offend. Ethnicity is a gestalt. Physical appearance, language, religion, ideology, and folkways are bound in an inseparable unity. To tamper with one part is to violate the integrity of the whole. The very process of naturalization requires the adoption of values different from one's nativity. For some, the resulting identity dissonance may be too great to handle in the long term. Therefore some may attempt to retain their native intentions. For some, this leads to the spectre of unnaturalized minds in naturalized bodies. For others, it leads to attempting to fit in by modifying one's body via surgery, such as rhinoplasty, epicanthoplasty, and blepharoplasty. In the process of trying to fit in, people who appear exceedingly different will excel and achieve greatly. If this were not so, would anyone be reading this on the Internet?

    In the USA there is now a critical mass of those who are different who have risen to great heights. However, when they look in the mirror, they cannot help but be reminded that they come from a place that has values that differ, sometimes greatly from the ones that they adopted under oath. Enter human nature with respect to temptation resistance and the potential for disaster involving national security is great.

    It's one of biggest reasons why people on our own soil betray our trust to foreign governments. The only way we can override that in most cases is to stop being so limp-wristed toward people who break our espionage and export laws, and start seriously ruining the lives of people who break these laws

    This already has been happening to Jews in the USA (Jonathan Pollard and Julius and Ethel Rosenberg). Of course an Irredeemable Protocols Believer will say that these instances are merely for public consumption to dissuade belief in a Jewish conspiracy. However, this is beyond the scope of this posting.

    I have been saying this for years that the oath of citizenship taken does not rewrite DNA. Where the Fourteenth Amendment says "and subject to the jurisdiction thereof" the judiciary would best serve by interpreting the clause as "and subject to the ideological jurisdiction thereof". The irony of citizenship apart from certifiable ideological naturalization has become ever more clear in U.S. v. Wong Kim Ark. It should be just as much a hassle to naturalize in the USA as most other nations so as to serve as an incentive to get ALL parts of one's mutable condition naturalized. Not all nations permit naturalization (especially in the Persian Gulf), and it is no accident that such nations have trade and budget surpluses pouring into sovereign wealth funds.

    The nagging problem is that China holds a critical percentage of federal debt and an obscene trade surplus. This has impaired the sovereignty necessary to do what is proper from a national security perspective. Perhaps what is deeper still is that we are seeing a revisit of the clash of civilizations the likes of which has not been witnessed since the mingrations of Indo-European peoples from the grasslands of West Asia some several millenia ago.

    The right to speak one's mind without retaliation from government does not exist in a political state of nature. Remember whence cometh the quote "The nail that sticks up gets hammered down".

    --
    Submission as evidence constitutes plaintiff and/or prosecutorial misconduct.
  50. Bullshit by PingXao · · Score: 1

    They just want more money in their budgets. If .gov or .mil computers on the interet are resulting in any serious threat to national security, then GET THEM OFF THE INTERNET! It's the people who insist on putting them ON the internet who are doing the real damage, not the hackers from Bogie Land.

  51. Reciprocity by Anonymous Coward · · Score: 0

    Countries will only participate IFF the US provides reciprocity. Someone fleeing another country and landing in the US will be wanted by the other countries authorities. Requests sent to the US have typically resulted in very poor to null interest from US authorities. Information sharing is even worse. If the US wants others to "be friends", it has to be a friend. It can't all go one way.

  52. Title confused me by HappyEngineer · · Score: 1

    When I read the title "FBI Warns of Sweeping Global Threat To US Cybersecurity" my first thought was "The FBI is complaining about the NSA?".

  53. yeah right by jtgd · · Score: 1

    blah blah blah blah blah blah blah blah and we have to monitor the whole Internet to keep you safe.

    --
    J
  54. Define:incredible by RockDoctor · · Score: 1

    the United States has had incredible success fostering overseas partnerships.

    The actual meaning of "incredible" :
    beyond belief or understanding;
    wordnet.princeton.edu/perl/webwn

    overused as a hyperbole for "good." It means "too improbable to believe":
    www.iolani.honolulu.hi.us/Keables/KeablesGuide/PartThree/Letters/I.htm

    Too implausible to be credible; beyond belief; unbelievable;
    en.wiktionary.org/wiki/incredible

    The Hawaii phrasing is particularly apt. So, by it's own words, the US Govt has had success "too improbable to believe" in fostering overseas partnerships. Since the tone of the article is of celebration that the US Govt has had a lot of success in fostering overseas partnerships, I deduce that this is coded speech by someone who knows how to use English and wants to say "the US Govt has had almost no success in fostering overseas partnerships". More specifically, the US govt has had far less success than it expects or hopes for.

    Words have meanings ; people do, sometimes use those meanings.

    --
    Birds are not dinosaur descendants;birds are dinosaurs, for all useful meanings of "birds", "are" and "dinosaurs"