SCADA Vulnerabilities In Prisons Could Open Cell Doors
Orome1 writes "Many prisons and jails use SCADA systems with PLCs to open and close doors. Using original and publicly available exploits along with evaluating vulnerabilities in electronic and physical security designs, researchers discovered significant vulnerabilities in PLCs used in correctional facilities by being able to remotely flip the switches to 'open' or 'locked closed' on cell doors and gates."
The SCADA system isn't flawed, the whole prison system in U.S. is. Not only have studies shown that there is no need for such locked down prison facilities, but it's also demonstrated by real life experiences in Norway. Almost all of Norway's prisons are open. Their objective isn't locking down people but correct behaviour. The purpose is to create real life environment, complete with saunas, sunbeds and own rooms and furniture. It makes much more sense too. If you just lock down people for years they are always going to stay criminals. If you try to correct their behaviour and reintroduce them to system and proper behavior, they will learn and also stay out of prisons in future. It's very telling that U.S. has one of the highest percentages of their people in prisons. That system clearly isn't working.
Covered back in November.
Is Slashdot's submission system running on SCADA? I ask because we this "duplicate story" vulnerability keeps popping up.
#DeleteChrome
I did the crime. Did I deserve punishment for what I did? Definitely, I hurt a lot of people through my actions, not just my victim. However, while I cannot speak for the system in other countries, the system here is very flawed. It gives lip service to rehabilitation, but does very little to actually produce it. In my experience, most of the teachers and counselors in prison are there for two reasons. One, they could not hold a real teaching or counseling job because they were incompetent, lazy, or both. Two, the prison system gives them a place where they can sit, collect great benefits and have inmates do most of the work. I tutored in a Software class for 7 years while I was inside and the the teacher could not even be bothered to learn windows XP (her mind was stuck on DOS and didn't know that well). She was well meaning, but also ignorant and clueless. There are exceptions to this, but it is largely the rule.
The system is hugely exploitative. In the Virginia system you have Virginia Correctional Enterprises. In the Feds you have FPI, and other states have similar programs. They pay more than any other job in prison (I made
The system is corrupt. I am not just talking about low level corruption of correctional officers accepting bribes or smuggling contraband, which havens daily. But on and up to the top. From administrative staff skimming commissary funds to hold officer parties, to buying equipment for a band room on state funds, never opening the band room then selling the equipment. I saw the latter one happen myself. Hell in VA the state code gives the director of DOC the permission to take bribes and kickbacks!
5. To accept, hold and enjoy gifts, donations and bequests on behalf of the Department from the United States government and agencies and instrumentalities thereof, and any other source, subject to the approval of the Governor. To these ends, the Director shall have the power to comply with such conditions and execute such agreements as may be necessary, convenient or desirable, consistent with applicable standards and goals of the Board;
I have to give a view (somewhat) from the other side as well. I have seen posts recommending separating the 'bad' criminals from the ones who can be rehabilitated. How do you propose to do that? Based on the crime? Their behavior while imprisoned? I spent ten years inside and there are people who are so good at gaming and manipulating ANY system it would make your jaw drop. I personally am not good at manipulating people and don't want to be, but in order to survive there were many times I had to bend and break the rules. For me, it was making my own soldering gun and tools and collecting contraband parts to repair other inmates electronics. (Most people don't want to fuck with the guy who can fix their TV for them cheaply when it breaks). For others it might be stealing supplies or running a gambling pool. Finding the right way to classify and group prisoners is an exceedingly difficult prospect, and to be quite frank, most of the staff and administration at these facilities (at least in my exp