Cyber War update

Post/Author/DateTimePost
#1

Robin_Hoodlum

Oct 20, 2010 17:23:41
www.strategypage.com/on_point/2010102021...

Hmmm...
#2

modern_iconoclast

Oct 20, 2010 17:43:24
It is theoretically possible, I don't know if we have to fear such an attack and how the other systems would react, but it is something to think about when you work in IT (like me).

There was a recent attack of that type against systems in Iran, lots of damage (on IT equipment that is) but few real material damage. But that doesn't mean it's impossible.
#3

pluisjen

Oct 21, 2010 6:20:35
If I hadn´t worked in IT myself I would´ve dismissed it as nonsense, but the average level of security put into code is really low, even in stuff that's supposed to be secure (the kind of things that are required to run a multi-billion dollar company occasionally end up on TDWTF, a site for bad code from businesses) is often so glaringly lacking in any form of security that I wouldn't be surprised at all if they're easy to break into.

At least there should be the advantage that these machines shouldn't be connected to the internet, so that you'll have to get on-site to actually upload such a virus. One hopes, at least. 
#4

jesse.two.coins

Oct 21, 2010 7:06:19
yeah plu great theory :D
#5

jesse.two.coins

Oct 21, 2010 7:07:45
however...most american coding ive seen is airtight *parts deleted for obvious reasons* (it was a stupid comparison) haha
#6

pluisjen

Oct 21, 2010 7:18:43
I hope you are joking... a .bat is barely considerable as "coding" and a .exe can as easily be unprotected as any other file. And we're talking about systems here that don't even have exes, probably. I doubt they're running Windows on a powerplant support system, that's a bigger risk then all the hackers in the world combined...

Read The Daily WTF, it's a website about bad coding, and I think it's mostly from the USA because the website itself is based there. It's not safe at all. It makes you scared everytime you use your creditcard or bankcard to see the number of errors and totally unsafe practices that surround banking companies.
#7

jesse.two.coins

Oct 21, 2010 7:35:17
well i write .xex coding for a "living" lol actually just so I can eat at tacobell alot :p
#8

jesse.two.coins

Oct 21, 2010 7:35:40
and ill bet they do use windows
#9

pluisjen

Oct 21, 2010 7:41:11
.xex? You are an XBox developer?

If they use windows, it just makes me even gladder I'm not living near anything that can explode in a ball of fiery death that consumes entire cities when it gets a bluescreen <_<
#10

jesse.two.coins

Oct 21, 2010 7:42:19
.xex? You are an XBox developer?

If they use windows, it just makes me even gladder I'm not living near anything that can explode in a ball of fiery death that consumes entire cities when it gets a bluescreen <_<



haha I wish, I write codes for jtaggers, people that hack their xboxes to run unsigned code
#11

toastedamphibian

Oct 21, 2010 15:30:10
You people confuse me.
#12

pluisjen

Oct 21, 2010 15:53:40
Which people?
#13

toastedamphibian

Oct 21, 2010 16:00:51
Plushy, Jesse, and Thunder.
#14

pluisjen

Oct 21, 2010 16:01:22
OK. Confuse you about what?
#15

toastedamphibian

Oct 21, 2010 16:19:28
Thunder: Why would anyone think it was a joke? WTF?
Plushy and Jesse: Of course it isn't safe. Your never safe. Safe is an illusion.
Plushy: Assuming your talking about nuclear power plants: they really would not blow up because of a computer crash.
#16

pluisjen

Oct 21, 2010 16:32:58
I know they won't blow up, that was just being silly. Shouldn´t probably used more smileys or something.

But it's not just that you're not safe. It's that I've seen enough code WTFs that I can safely compare the average piece of software with a paper wall. It´s only safe until someone accidentally falls through it.
We can hope that these kind of things run better... but I´m having my doubts. It´s possible to create fairly safe and hard to crack software. Most companies really don´t bother. Many non-technical people who have no grasp on the importance of security get to call the shots on security.

To compare safety, it's like replacing the chief of police with the person that watched the most episodes of NCIS. They might think they know stuff, but they're really completely clueless. And yet you can't possibly convince them of that, so you have to do as they tell you, and see everything be run into the ground.

I've worked for these people, and they're dangerous to the security of any software/hardware system there is. We can pray there aren't any working for the big power companies, of course... but still.
#17

EscherEnigma

Oct 21, 2010 18:56:19
Plushy: Assuming your talking about nuclear power plants: they really would not blow up because of a computer crash.


IIRC, most nuclear power plants are designed such that in the case of a catastrophic power/system failure, the control rods drop down and permanently disable the something-or-other.  As you can tell, I'm not too sure on the details, but the idea is that even if things go really wrong, the thing won't blow up.

However, if you compromised the system you could probably force it to do something that would blow up, but it wouldn't be as simple as crashing the system.
#18

Robin_Hoodlum

Oct 21, 2010 19:18:40
The article said that the main use for the virus was to cut power supply to nations. Not really make things explode. Except for dams that could flood stuff if thigs were opened remotely.


If viruses exist that can cut power to nations and cause dams to open and flood downstream, what makes you think that there can't be one to cause nuclear reactors to melt down?
#19

pluisjen

Oct 22, 2010 1:40:39
The article said that the main use for the virus was to cut power supply to nations. Not really make things explode. Except for dams that could flood stuff if thigs were opened remotely.


If viruses exist that can cut power to nations and cause dams to open and flood downstream, what makes you think that there can't be one to cause nuclear reactors to melt down?



Hopefully, a hardware based failsafe. But there very well might be a way to cause it to overload.
#20

jesse.two.coins

Oct 26, 2010 6:47:56
didn't they use conficker to make a hydroelectric generator explode?
#21

boraxe

Oct 29, 2010 9:32:38
If viruses exist that can cut power to nations and cause dams to open and flood downstream, what makes you think that there can't be one to cause nuclear reactors to melt down?


Cos "shut off power" and "open flood gates" are native functions of the system which simply need to be tapped into by mailcious software, "explode" is not a native function of nuclear reactors. To make that happen a lot of things, physcial things, have to go wrong on-site. They'd have a better chance of writing a hack to make you drop your keys in the toilet.
#22

modern_iconoclast

Oct 29, 2010 16:33:55
If viruses exist that can cut power to nations and cause dams to open and flood downstream, what makes you think that there can't be one to cause nuclear reactors to melt down?


Cos "shut off power" and "open flood gates" are native functions of the system which simply need to be tapped into by mailcious software, "explode" is not a native function of nuclear reactors. To make that happen a lot of things, physcial things, have to go wrong on-site. They'd have a better chance of writing a hack to make you drop your keys in the toilet.



Could hackers solve world constipation?



I work in IT and hackers "me font chier" if that's what you're talking about.
Litteral translation would be "make me poop" but the meaning gets lost in translation.
#23

toastedamphibian

Oct 29, 2010 17:56:28
Hackers make you **** your pants?
#24

modern_iconoclast

Oct 29, 2010 18:12:43
Hackers make you **** your pants?



that's what I was talking about with lost in translation.
more in the sense of acting as a laxative to help with constipation.
a PG-13 forum friendly version would kinda be "gets on my nerves".
#25

toastedamphibian

Oct 29, 2010 21:14:09
In american English, making you **** is a sign of terror. Something scared you so much you lost controll of your bowels. Thus, it would mean that hackers terrify you, not annoy you. It really does get mangled in translation, yes? Funny.
#26

jesse.two.coins

Nov 01, 2010 6:52:30
you can sooo write a hack to make someone drop their keys lol
#27

jesse.two.coins

Nov 01, 2010 7:09:53
dude, gross.