Advertisement
Home arrow Digital Warfare arrow Own your local SCADA!
Sunday, 23 November 2008
 
 
Last week attacks
O.S.  Defs.  %
Linux  8778  71.58%
Win 2003  1950  15.90%
Win 2000  722  5.89%
Solaris 9/10  402  3.28%
FreeBSD  226  1.84%
Other  185  1.51%

Total attacks: 12263 of which 4619 single ip and 7644 mass defacements

Main Menu
Home
Digital Warfare
Geopolitics
ITsec News
ITsec Advisories
Test Drive
360°
Digital Attacks Archive
Zone-H events
Publications
Zone-H Friends/Partners
Contact Us
Search
Download Area
Zone-H forum
About this website
Login Form





Lost Password?
No account yet? Register
Visitors' Map
Own your local SCADA! PDF Print E-mail
User Rating: / 12
PoorBest 
Written by minor   
Friday, 24 August 2007

scadaDoing penetration tests can bring sometimes surprising results. But doing penetration tests on critical targets should not bring any surprising results. As Forbes few days ago informed, Scott Lunsford was offered to penetrate into nuclear power station.

As owner of the plant claimed, critical components could not ne accessed from the Internet."It turned out to be one of the easiest penetration tests I'd ever done," Lunsford said.

 

 

He added: "By the first day, we had penetrated the network. Within a week, we were controlling a nuclear power plant." System was powered by SCADA software. Ganesh Devarajan from Tipping Point presented at DefCon his security research on SCADA systems and possibilities to find vulnerabilities inside. No doubt this system is vulnerable, because it is not publicly available, so there is no pressure from users to fix possible vulnerabilities.

Another fact is, that system was designed in the time, there was no internet connection, so this explains, why developers were not concerning about possible security issues.

When connecting this revelation to fact, that Internet is weapon, we come to conclusion, that single attacker can cause great damage affecting thousands of citizens. For example, with one owned SCADA in nuclear power station you have weapon of mass destruction. Enough, or?

 


Comments Index (Total Messages: 4)
security Written by Guest on 2007-08-24 16:29:59
  Re: security Written by Guest on 2007-09-03 12:24:15
  Re: security Written by Guest on 2007-09-01 23:18:49
  Re: security Written by Guest on 2007-09-01 23:21:54

Powered by a Zone-H(ified) version of AkoComment 3.0!


DISCLAIMER: Forum postings are the opinion of the posting author alone, and should not be taken as the opinion of Zone-h. The   author is entirely and solely responsible for all content that he/she uploads, posts, or otherwise transmits via the website. Zone-h is not responsible for such content. However, Zone-h shall have the right, but not the obligation, to delete, move, or edit any content that violates this agreement or is otherwise objectionable as determined by Zone-h in its sole discretion and without notice.
 
< Prev   Next >
Advertisement
 
Top! Top!