US's Greatest Vulnerability is Ignoring the Cyber Threats From Our Adversaries, Foreign Policy Expert Says (cnbc.com)
America's greatest vulnerability is its continued inability to acknowledge the extent of its adversaries' capabilities when it comes to cyber threats, says Ian Bremmer, founder and president of leading political risk firm Eurasia Group. From a report: Speaking to CNBC from the Munich Security Conference on Saturday, the prominent American political scientist emphasized that there should be much more government-level concern and urgency over cyber risk. The adversarial states in question are what U.S. intelligence agencies call the "big four": Russia, China, North Korea, and Iran. "We're vulnerable because we continue to underestimate the capabilities in those countries. WannaCry, from North Korea -- no one in the U.S. cybersecurity services believed the North Koreans could actually do that," Bremmer described, naming the ransomware virus that crippled more than 200,000 computer systems across 150 countries in May of 2017.
Borge Brende, president of the World Economic Forum, weighed in, stressing the economic cost of cyber crimes. "It is very hard to attribute cyberattacks to different actors or countries, but the cost is just unbelievable. Annually more than a thousand billion U.S. dollars are lost for companies or countries due to these attacks and our economy is more and more based on internet and data."
Borge Brende, president of the World Economic Forum, weighed in, stressing the economic cost of cyber crimes. "It is very hard to attribute cyberattacks to different actors or countries, but the cost is just unbelievable. Annually more than a thousand billion U.S. dollars are lost for companies or countries due to these attacks and our economy is more and more based on internet and data."
If we would acknowledge that the problem exists, rather than deny it because it somehow diminishes the ego of the current occupant of the Oval Office, we could start to do something about it.
Instead of the NSA working with privacy industry to fix exploits, it sits on them and weaponizes them. It means other parties who find the same can also exploit them against us. It makes all our security weak.
Then we insist on putting industrial and military systems on the internet when smarter countries are moving the other way, sometimes even using paper records to make the data more difficult to steal. Not that paper data can't be stolen but it is harder to get a lot at once and it requires old fashioned spy methods.
'Then we have legions after legions of technically clueless managers who ignore the advice of security experts for "convenience".
So if we have cyber security probs those are probs we made for ourselves and we deserve to face the consequences.