<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; national-security</title>
	<atom:link href="http://www.darknet.org.uk/tag/national-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>FBI Unclassified E-mail Network Owned By Virus</title>
		<link>http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/</link>
		<comments>http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/#comments</comments>
		<pubDate>Thu, 11 Jun 2009 11:01:50 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Legal Issues]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[fbi email hack]]></category>
		<category><![CDATA[fbi email virus]]></category>
		<category><![CDATA[fbi hacked]]></category>
		<category><![CDATA[fbi hacking]]></category>
		<category><![CDATA[fbi malware]]></category>
		<category><![CDATA[FBI-security]]></category>
		<category><![CDATA[fbu unclassified email network]]></category>
		<category><![CDATA[hacking-fbi]]></category>
		<category><![CDATA[national-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1828</guid>
		<description><![CDATA[If the FBI e-mail network can get owned by a virus, what hope does the average joe have when it comes to keeping their e-mail secure? It must be pretty serious too if it actually forced them to shut down the Internet facing e-mail network, it seems like it was down for at least a [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>If the <a href="http://www.darknet.org.uk/tag/fbi/">FBI</a> e-mail network can get owned by a virus, what hope does the average joe have when it comes to keeping their e-mail secure?</p>
<p>It must be pretty serious too if it actually forced them to shut down the Internet facing e-mail network, it seems like it was down for at least a week and possible still unavailable to some users.</p>
<p>This demonstrates the problems self-propagating malware can cause to e-mail systems.</p>
<blockquote><p>A virus has reportedly disrupted Web-based e-mail services at the U.S. Federal Bureau of Investigation.</p>
<p>The FBI confirmed Friday that it had been forced to shut down its Internet-facing unclassified network, but disputed a report that the incident had left the agency unable to e-mail counterparts in other intelligence and law enforcement agencies. &#8220;The external, unclassified network was shut down by the FBI as a precautionary measure,&#8221; the FBI said in a statement. &#8220;Within 48 hours of identifying the issue and mitigating risks, e-mail traffic was largely restored to the external, unclassified network.&#8221;</p>
<p>FBI agents can send e-mail on the agency&#8217;s more secure internal network or via BlackBerry, but many use this unclassified network to send messages via a Web-based e-mail system, said a source familiar with the situation. That webmail service was down throughout the week and continued to be unavailable for some users, the source said. </p></blockquote>
<p>Where&#8217;s the full disclosure! We want details please, was this a normal virus that going around online? Was it something tailored to attack the FBI network? Was it seeded from inside or did it come in externally?</p>
<p>So many interesting questions, but no answers as usual.</p>
<p>It could be related to the recent <a href="http://www.darknet.org.uk/2009/06/hackers-exploiting-unpatched-directx-bug-with-quicktime/">QuickTime flaw</a> with the DirectX rendering, the timing is about right &#8211; I guess we&#8217;ll never know though.</p>
<blockquote><p>The FBI did not provide details on the security incident, but it looks as though hackers may have used maliciously encoded file attachments to hack into the network. In its statement, the FBI said it was now blocking users from sending or receiving attachments on the unclassified network &#8220;to give our technicians time to scan all the attachments that came into the e-mail system to make sure we have identified and mitigated all threats to the network.&#8221;</p>
<p>Malicious attachments are a constant security threat for computer users.</p>
<p>Microsoft warned Thursday that attackers are sending malicious QuickTime media files to victims, exploiting an unpatched flaw in Apple&#8217;s media format, in order to install malicious software on Windows systems. </p></blockquote>
<p>It was first reported by <a href="http://www.nypost.com/seven/05292009/news/regionalnews/virus_kos_fbi_e_mails_171569.htm">NYPost</a> and then later by <a href="http://www.cbsnews.com/stories/2009/05/22/tech/main5033285.shtml?source=RSSattr=SciTech_5033285">CBS News</a>.</p>
<p>I&#8217;ll be keeping an eye out to see if there are any further developments or news disclosure, if you&#8217;ve read anything relevant drop a link the comments.</p>
<p></p>
<p>Source: <a href="http://www.networkworld.com/news/2009/052909-fbi-e-mail-clobbered-after.html">Network World</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=FBI+Unclassified+E-mail+Network+Owned+By+Virus+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1828+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;t=FBI+Unclassified+E-mail+Network+Owned+By+Virus" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;title=FBI+Unclassified+E-mail+Network+Owned+By+Virus" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;title=FBI+Unclassified+E-mail+Network+Owned+By+Virus" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;title=FBI+Unclassified+E-mail+Network+Owned+By+Virus" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/&amp;title=FBI+Unclassified+E-mail+Network+Owned+By+Virus" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F06%2Ffbi-unclassified-e-mail-network-owned-by-virus%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/06/fbi-unclassified-e-mail-network-owned-by-virus/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Ensuring Data Security During Hardware Disposal</title>
		<link>http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/</link>
		<comments>http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/#comments</comments>
		<pubDate>Tue, 12 May 2009 10:20:00 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[Hardware Hacking]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[7 pass overwite]]></category>
		<category><![CDATA[boot and nuke]]></category>
		<category><![CDATA[data-security]]></category>
		<category><![CDATA[dban]]></category>
		<category><![CDATA[decommissioning]]></category>
		<category><![CDATA[eraser]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hardware disposal]]></category>
		<category><![CDATA[hardware retiring]]></category>
		<category><![CDATA[missile systems]]></category>
		<category><![CDATA[national-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/?p=1784</guid>
		<description><![CDATA[After our recent story about the trading of BlackBerries for data theft the issue has emerged again this time more towards the secure disposal of data stored on PC hard disks. If a company or organisation has a decent data/information security policy in place (Like ISO27001 for example) they should have a secure destruction/disposal policy [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>After our recent story about the trading of <a href="http://www.darknet.org.uk/2009/05/explosion-of-blackberry-trading-in-nigeria-data-theft/">BlackBerries for data theft</a> the issue has emerged again this time more towards the secure disposal of data stored on PC hard disks.</p>
<p>If a company or organisation has a decent data/information security policy in place (Like <a href="http://en.wikipedia.org/wiki/ISO_27001">ISO27001</a> for example) they should have a secure destruction/disposal policy as part of that.</p>
<p>The current fiasco reminds me of the <a href="http://www.darknet.org.uk/2008/10/mi6-sells-digital-camera-on-ebay-containing-terrorist-images/">digital camera sold on eBay containing terrorist information</a> from the MI6!</p>
<blockquote><p>The recent discovery of a computer on eBay with data on a U.S. missile system underscores the importance of securing data when it is time to retire and dispose of a machine. Enterprises need to have proper plans and oversight in place to protect their information.</p>
<p>When reports that data on a U.S. missile system was found on a computer auctioned on eBay, enterprises were provided another example of what happens when they fail to securely manage data at the end of its life.</p>
<p>In this case, the consequences were nil, as the computer in question was purchased as part of a research project and has been turned over to the FBI. Still, the situation underscores the importance of having policies in place to protect data that extend all the way to the &#8220;death&#8221; of an organization’s machines.</p></blockquote>
<p>The kind of information floating around in computers really needs to be kept under a tighter control, how can missile systems data be left on a computer sold on eBay? It just seems ridiculous.</p>
<p>Companies dealing with confidential information generally have data disposal policies in place, why do government organisations dealing with World security not have tight policies regarding disposal of decommissioned hardware?</p>
<blockquote><p>For sensitive data, it&#8217;s best to do it using a disk degausser or seven-way random write algorithm, which some operating systems support either through tools or the command line, noted Forrester analyst Andrew Jaquith. There are also third-party tools that do this as well, he said.</p>
<p>“There&#8217;s also the physical option,” he added. “A sledgehammer to the memory card or hard disk is quite effective. It&#8217;s also usually faster and arguably more satisfying.”</p>
<p>Another layer of protection can also be found in encryption. Deguassing or physically shredding a drive can be costly, said Seagate’s Gianna DaGiau said. Overwriting a drive also may be incomplete if it doesn’t cover reallocated sectors or is thwarted by drive errors.</p>
<p>“Some corporations have concluded the only way to securely retire drives is to keep them in their control, storing them indefinitely,” said DaGiau, Seagate&#8217;s senior manager of enterprise security. “This cannot be considered truly secure, as large numbers of drives in close proximity can easily tempt employees and lead to some drives being lost or stolen.”</p></blockquote>
<p>A 7 pass overwrite will be good enough in most situations, tools are available to do this for free like <a href="http://www.dban.org/">DBAN</a> and <a href="http://www.heidi.ie/eraser/">Eraser</a> so there is really NO excuse not to do it.</p>
<p>Personally if it&#8217;s important I&#8217;d recommend 7-pass overwrite, then degauss then bang the shit out of it with a baseball bat then burn it up (a blowtorch would be good).</p>
<p>I&#8217;d say your data should be pretty secure then, downside is no-one would want it buy it on eBay after you did that.</p>
<p></p>
<p>Source: <a href="http://www.eweek.com/c/a/Security/Ensuring-Data-Security-When-its-Time-to-Retire-Computers-573365/?kc=rss">eWeek</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Ensuring+Data+Security+During+Hardware+Disposal+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D1784+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;t=Ensuring+Data+Security+During+Hardware+Disposal" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;title=Ensuring+Data+Security+During+Hardware+Disposal" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;title=Ensuring+Data+Security+During+Hardware+Disposal" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;title=Ensuring+Data+Security+During+Hardware+Disposal" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/&amp;title=Ensuring+Data+Security+During+Hardware+Disposal" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2009%2F05%2Fensuring-data-security-during-hardware-disposal%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2009/05/ensuring-data-security-during-hardware-disposal/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>DOE Hit By Hackers and Covered Up</title>
		<link>http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/</link>
		<comments>http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/#comments</comments>
		<pubDate>Thu, 21 Sep 2006 08:29:50 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Legal Issues]]></category>
		<category><![CDATA[data-leaks]]></category>
		<category><![CDATA[doe]]></category>
		<category><![CDATA[government-hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[national-nuclear-security-administration]]></category>
		<category><![CDATA[national-security]]></category>
		<category><![CDATA[safety]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[social-security]]></category>
		<category><![CDATA[us]]></category>
		<category><![CDATA[us-government]]></category>
		<category><![CDATA[USA]]></category>
		<category><![CDATA[vetarns-department]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/</guid>
		<description><![CDATA[Ahah! More government cover-ups? This one was a while back too. Digging on those archives right now yah. A hacker stole a file containing the names and Social Security numbers of 1,500 people working for the Energy Department&#8217;s nuclear weapons agency, scary eh? The US government security really does scare me sometimes, their internal departments [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Ahah! More government cover-ups? This one was a while back too.</p>
<p>Digging on those archives right now yah.</p>
<p>A hacker stole a file containing the names and Social Security numbers of 1,500 people working for the Energy Department&#8217;s nuclear weapons agency, scary eh?</p>
<p>The US government security really does scare me sometimes, their internal departments have some of the lowest IT security scores&#8230;there are SO many data leaks and successful hacks, I mean I appreciate they have a sprawling infrastructure which makes it hard to maintain, but please, at least try?</p>
<p><a href="http://www.darknet.org.uk/2006/04/homeland-security-scores-an-f-for-internal-security-again/">For example Homeland Security scored an F again for Internal Security.</a></p>
<p>And this time it was covered up..</p>
<blockquote><p>But the incident, somewhat similar to recent problems at the <a href="http://www.darknet.org.uk/2006/06/us-sailors-information-leaked-on-the-web/">Veterans Affairs Department</a>, was last September yet senior officials were informed only two days ago, officials told a congressional hearing Friday. None of the victims was notified, they said.</p>
<p>The data theft occurred in a computer system at a service center belonging to the National Nuclear Security Administration in Albuquerque, New Mexico. The file contained information about contract workers throughout the agency&#8217;s nuclear weapons complex, a department spokesman said.</p>
<p>NNSA Administrator Linton Brooks told a House hearing that he learned of the security breach late last September, but did not inform Energy Secretary Samuel Bodman about it. It had occurred earlier that month.</p></blockquote>
<p>It was as always blamed on &#8216;miscommunication&#8217; but it&#8217;s bullshit as the people involved meet every day..</p>
<p>The oversight and investigations subcommittee learnt of this and launched their panel into action.</p>
<blockquote><p>The Energy Department spends $140 million a year on cyber security, Gregory Friedman, the DOE&#8217;s inspector general, told the committee. But he said that while improvements have been made, &#8220;significant weaknesses continue to exist,&#8221; making the unclassified computer system vulnerable to hackers.</p>
<p>Last fall, a so-called &#8220;Red Team&#8221; of DOE computer specialists &#8212; seeking to test the security safeguards &#8212; succeeded in hacking into and gaining control of a DOE facility&#8217;s computer system, the panel was told.</p>
<p>&#8220;We had access to sensitive data including financial and personal data&#8230;. We basically had domain control,&#8221; said Glenn Podonsky, director of DOE&#8217;s Security and Safety Performance Assessment. &#8220;We were able to get passwords, go from one account to another.&#8221;</p></blockquote>
<p>Perhaps they really do need some lessons?</p>
<p></p>
<p>Source: <a href="http://www.wired.com/news/wireservice/0,71127-0.html?tw=rss.index">Wired</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=DOE+Hit+By+Hackers+and+Covered+Up+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D231+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;t=DOE+Hit+By+Hackers+and+Covered+Up" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;title=DOE+Hit+By+Hackers+and+Covered+Up" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;title=DOE+Hit+By+Hackers+and+Covered+Up" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;title=DOE+Hit+By+Hackers+and+Covered+Up" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/&amp;title=DOE+Hit+By+Hackers+and+Covered+Up" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F09%2Fdoe-hit-by-hackers-and-covered-up%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/09/doe-hit-by-hackers-and-covered-up/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Next Up &#8211; Hacking Nuclear Powerstations!</title>
		<link>http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/</link>
		<comments>http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/#comments</comments>
		<pubDate>Mon, 10 Jul 2006 10:53:15 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[General News]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[computer-hacking]]></category>
		<category><![CDATA[darknet]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[national-security]]></category>
		<category><![CDATA[network-security]]></category>
		<category><![CDATA[nuclear-power]]></category>
		<category><![CDATA[power-station-hacking]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/</guid>
		<description><![CDATA[Now this is a scary though, with the digitisation of the old analogue power stations and the accidental cross-over of networks (as we&#8217;ve seen before) people could soon be hacking nuclear power station control systems.. he nuclear power industry is going digital &#8212; replacing mechanical systems with more efficient, networked computer-controls. If that makes you [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Now this is a scary though, with the digitisation of the old analogue power stations and the accidental cross-over of networks (as we&#8217;ve seen before) people could soon be hacking nuclear power station control systems..</p>
<blockquote><p>he nuclear power industry is going digital &#8212; replacing mechanical systems with more efficient, networked computer-controls.</p>
<p>If that makes you nervous in a season-four-of-24 kinda way, you&#8217;re not alone. Last week, the US Nuclear Regulatory Commission voted unanimously to add cyber security requirements to federal regulations governing nuclear power plant security. </p></blockquote>
<p>Scary eh? Something straight out of a sci-fi movie.</p>
<blockquote><p>The main concern is that the next generation of digital &#8220;instrumentation and control&#8221;, or I&#038;C, systems could all-too-easily wind up linked to company business networks, and, through them, the internet &#8212; all but guaranteeing they&#8217;d be hacked.</p>
<p>The risk was illustrated in 2003, when the Slammer worm penetrated a network at the idled Davis-Besse nuclear plant in Ohio, disabling a safety monitoring computer for nearly five hours. The worm snuck in through the energy company&#8217;s corporate network, over an unmonitored connection from a contractor&#8217;s private LAN.</p></blockquote>
<p>I think the whole world should be pretty nervous, don&#8217;t you?</p>
<blockquote><p>At an NRC security briefing last March, commissioner (and Los Alamos veteran) Peter Lyons commented he was &#8220;very, very nervous&#8221; about such interconnections. The exchange that follows shows how nervous nuclear-types are about sounding nervous. From the <a href="http://www.nrc.gov/reading-rm/doc-collections/commission/tr/2006/20060315.pdf">transcript</a> [PDF] </p></blockquote>
<p>Oh dear..</p>
<p></p>
<p>Source: <a href="http://blog.wired.com/27BStroke6/#1516283">Wired Blog</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D285+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;t=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;title=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;title=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;title=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/&amp;title=Next+Up+%E2%80%93+Hacking+Nuclear+Powerstations%21" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F07%2Fnext-up-hacking-nuclear-powerstations%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/07/next-up-hacking-nuclear-powerstations/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

