NATO Holds Annual Cyber Defense Exercise
Bismillah writes about NATO's annual Locked Shields cyber defense exercises. "The Western European and North American mutual defence pact organisation NATO has concluded an annual cyber defence exercise, defending a fictitious network against incoming attacks.
Called Locked Shields 2013, the exercise involved 250 people in eleven locations around Europe, under the auspices of the NATO Cooperative Cyber Defence Centre of Excellence (CCD-COE), the Finnish and Estonian Defence Forces and two government IT security organisations in the Baltic country."
We have a Red Hat Down.
Roger that... We have a penguin down in the city.
who?
FTFA ..."For two days the Red Team launched attacks against the Blue Teamsâ(TM) networks and they had to defend, report and keep their systems running. ...NATO's Blue Team were declared the winners of the this year's exercise."
Would have been better to have the 'red team' made up of a bunch of hardened cyber criminals. Crackers, if you like. This sort of thing smacks of testing being done by developers.
"The greatest lesson in life is to know that even fools are right sometimes" - Winston Churchill
To attack the darkness.
Contrary to the popular belief, there indeed is no God.
Blue teams servers were on a private network not accessible to Red Team, then they'd be network professionals.
If there's no battlefield, there's no battle.
do you want to play a game?
"Would have been better if the Red Team was the entire world....The Blue Team would then actually have a real challenge on their hands."
Blue team challenge is to unplug the router from the public network, not much of a challenge!
General: "We need to secure our network, how do we do it?"
Soldier: "Well, we could just pull this jack here, the one connecting our critical systems to the public network the enemy are using!"
General: "Will it stop me surfing FB on my security PC?"
Soldier: "Very much so"
General: "Then the terrorists have won! Come up with another solution!"
IMHO, the call it Cyber DEFENSE games, but its really Cyber OFFENSE games. To defend is really simply, its you that provide the network infrastructure connecting (exposing) your systems to public networks. So you don't connect any critical to the public network. Really they're hoping everyone else is incompetent but themselves, with exposed critical systems to attack.
defending a fictitious network against incoming attacks
I bet the network was named:
:)
Computer
Hookup
Imitating
Network
Attacks
These exercises are just an empty show of force to make it look like they are doing something. Humans are too slow to respond to any well engineered attack, they'd be off better running Norton 360.
1) Ethernet Jacks
2) 50 Yard Dashboard
3) Calves and Quadricores
4) Weights and Load Balancing
5) Integrated Circuit Training
the u.s. 'military' and its appendages, what a laugh. their main problem is that no one with any competence wants to work for them. NSA was the last gasp, with SELinux. The latter tried somewhat reasonably to get control of the Cyber Command or whatever it's called, but the Pentagon got it, mainly so the lifers cd keep shoveling cash to and getting kickbacks from redmond and its 'ya'll come' virus (the one that invites all the other viruses onto yr hardware).
sorry, sorry b*tards. they haven't won a war since we allowed them to finish off the citizens' army.
the problem with the u.s. 'military' and its appendages is that no one with any competence wants to work for them. their last gasp in cyberspace was NSA's SELinux project. the latter tried somewhat reasonably to get control of the Cyber Command or whatever it's called, but the pentagon got it so the a*-licking lifers there cd keep shoveling money to and getting kickbacks from the people with the "ya'll come" virus (the one that gets into yr hardware and invites all the others in).
the poor excuses haven't won a war since they finished destroying the citizens' army.
In recent, cyber crime is growing rapidly as a result a huge number of web site and web resource come under thread. I expect the initiative that are taken by NATO and Europe will be succeed to defend such crime effectively. http://www.chatobstewart.com/
This is what happens when some two-bit blog summarizes a story without bothering to make sure it makes sense. Finland and Estonia would be - two separate Baltic countries.
Any bets which one TFS/TFA means?
So this is essentially a hackathon? Please, correct me if I am wrong...
when the fuck did computer hacking become the purview of the fucking mother goddamned military - and not even national militaries, but this fucking cold war goddamn dinosaur that was entirely based around the concept of the free world vs Josef Issaryanovich Dughashvili aka Stalin The Guy Who Killed 20 Million People That We Should Probably Stop Worrying About Because He's Been Dead Since Nineteen Fifty Fucking Three.
Fuck Nato, fuck the military industrial complex, fuck these government douchebags, fuck them wasting our money.
"oh but we must protect the nation from cyber attacks". listen douche the fucking internet doesnt care about nations anymore. corporations are certainly not single-nation based and thats where most of the cyber attacks occur.
oh but what if they find some vulnerability in a military system? We already know about vulnerabilities in military systems - whistleblowers point them out all the time and then the get sued for 'espionage' by the fucking government because ass rape contractor one doesnt want their precious 500 million dollar project to go down the shitter and their 'reputation in the security community' to get unduly tarnished to the extent they can no longer be payed $500,000 grand a year to sit on the board of some circle jerk fucking pseudo-think-tank and butt rape our nation into fucking poverty with their alarmist whorish bullshit PR campaigns. Example Number Fucking One - the Chertoff group - thats right kids. The guys who fucked up 9/11, Katrina, etc, can now be payed millions of dollars to slap their dicks across our collective faces over and over and jizz the press with bullshit and pay off their friends in the government to non-regulate them, classify everything they do as top secret, and otherwise put their penis-tentacles into your pockets, open your wallet, and destroy the future of your children.
Fictious network defense, no not even a hackathon. Another attempt to justify their network being on the internet. I still say, if its hooked to the network, if it's hooked to the internet, its hackable by the poorest of nations, even people.Even poor peoople, that you are trying to kill. But then even to commit the crimes those people admit too, So would you say, this is an attempt too "get" a security contractor some money? Was Darpanet too full of itself, had a contact to trace, or another contractor to award money too.
The blue team win. I am surprised that network can be secured against determined state-sponsored attacker. I suspect red team did not try very hard.