FutureIntelligence
No Result
View All Result
  • Login
  • Register
  • Home
  • Opinion
  • Radio & Podcasts
  • Events & Press
  • Tech Jobs
  • Reviews
  • About
FREE TO SUBSCRIBE
DONATE
  • Home
  • Opinion
  • Radio & Podcasts
  • Events & Press
  • Tech Jobs
  • Reviews
  • About
No Result
View All Result
FutureIntelligence
No Result
View All Result
Home Crime Computer Security

State software weapons on horizon

peter by peter
in Computer Security, Crime, Defence, Military technology, Security agencies
Reading Time: 4 mins read
A A
0
Share on FacebookShare on Twitter

Experts say more software weapon attacks are only a matter of time.

RELATED POSTS

Europe’s digital War of Independence

Space cold war warms up

Digital ID card row: to be, or not to be

Load More

When Iran announced in November 2010 that a computer virus had damaged its  uranium enrichment plant, the news created a stir around the world.

The damage caused by the Stuxnet virus was tangible proof that viruses could have a major impact on the ‘real world’.

Now a report by the UK-based Cyber Security Research Institute (CSRI) has revealed that the vulnerability of societies around the world to virus attacks is greater than many had supposed.

In particular parts of the UK’s Critical National Infrastructure (CNI) – the backbone of the country through which essential services such as power and water supply are run – could be especially at risk to attacks from either criminal or state-sponsored cyber attacks.

Infrastructure security dangerously poor

advertise
ADVERTISEMENT

In its ‘UK Critical Systems Report’, the CSRI reports claims that the so-called control systems world is ‘ten to fifteen years behind’ the IT industry in terms of security against online and digital attacks.

One reason for the vulnerability of the national infrastructure,  finds the report, is that traditionally the world of control systems has not regarded cyber security as an important issue.

‘One of the biggest issues is that the people who design, implement and build [the control systems] don’t know one end of security from another because it is not part of their culture. It’s not their fault, they just have not been required to do it,’ says one leading UK expert who asked not to be named, told the report’s author.

This is partly because at the time various systems, grids and their equipment were installed, there was no expectation that they would ever be linked up to the outside world via the internet.

But, says the report, the need to drive down costs in many industries and the discovery that some key safety systems in dangerous places could be controlled remotely via the internet have changed that.

‘The move to [new control]  systems boosts efficiency at utilities because it allows workers to operate equipment remotely. But at the same time this access to the internet exposes once-closed systems to cyber attacks,’ Frank Saxton, a computer network security engineer, tells the report.

‘Electric utilities, pipelines, railroads and oil companies use remotely controlled and monitored valves, switches and other mechanisms that are vulnerable to attack.’

Built for a different time

The report points out that neither computers nor phones lines – through which the internet runs – were built with security in mind.

‘This inherently insecure internet was then connected to the systems that run our electricity, gas, fuel, telecoms, water and food to provide greater online control and market access to data. In this way the internet has been connected to systems that were never intended to be connected to the outside world. We are now starting to see the impact of that,’ notes the report.

The report accepts that the UK government is starting to address the problem by announcing in October 2010 that €650 million will be spent on the nation’s cyber defences at a time when other public sectors are seeing their budgets slashed.

But it says that the current state of the infrastructure will hamper progress, as will a chronic skills shortage in cyber security and a continuing reluctance in the world of the CNI to address cyber security issues.

‘The situation is worsening rather than improving. The mix of the people with the industrial systems knowledge and the security skills isn’t there,’ warns one expert who is advising the UK Government on CNI.

‘I have assessed 40-50 jobs in the last three months and not a single one mentions security.’

Government and business must work together

The CSRI report also highlights the need, in an inter-connected world, for private businesses to play their part in helping defend the national infrastructure by ensuring their own data systems and computers are properly protected against attack.

But it is not optimistic that this will happen quickly.

‘Some observers point out that even if large companies had been aware of the Stuxnet vulnerabilities  they would not have taken the necessary steps to protect against it until it became essential to do so – i.e. that they had an example of a real world attack as in the case of the Iranian power plant,’ says the report.

The study also suggests that the computer security industry  faces greater challenges in a post-Stuxnet world
‘More and more it will become necessary for the computer security industry to act as part of the awareness-raising mechanism to prove the threat and the need to protect against it,’ it argues.

‘The challenge for computer security companies will be to evolve into a role that they have until now avoided – that of helping identify what needs to be protected, protecting it, finding out who is attacking it, and then helping prosecute the attackers.’

On a world-wide level the report also warns that with governments now devoting greater funds towards cyber security and with defence companies seeing the commercial opportunity and starting their own cyber security, there is a risk of an escalation in terms of  offensive as well as defensive cyber security techniques.

‘It is definitely the start of something new, and it’s definitely the start of an arms race for the simple reason that you can’t stockpile weaponised software because it has to be constantly updated to make sure that it will still work in an internet and cyber landscape that is constantly being updated,’  one employee of a leading US arms firm tells the author.

Copies of the CSRI Stuxnet Report ‘UK Critical Systems’ which costs £495 are available from [email protected] at the Cyber Security Research Institute

 

Previous Post

Hacker McKinnon ignored by UK authorities

Next Post

Teach young offenders software skills to avoid life of crime

peter

peter

Related Posts

Europe fights to liberate data from the US
Artificial Intelligence

Europe’s digital War of Independence

The US president Donald Trump’s erratic behaviour on the world stage has provoked a massive European data sovereignty backlash as...

by George Ridley
16th April 2026
Space cold war warms up
cyber security

Space cold war warms up

Experts monitoring satellites in space warn of potential war as global tensions spin into orbit. Western space experts are accusing...

by Peter Warren
26th January 2026
Digital ID card row: to be, or not to be
Politics

Digital ID card row: to be, or not to be

The Government’s confused announcement of a Digital ID card scheme faces disaster, unless the Government sets out clear plans, according...

by Blue Buffery
12th November 2025
The M&S hack is a brand attack
Computer Security

The M&S hack is a brand attack

The M&S hack has battered not only the retailer’s computer systems and business it has also battered its brand. The...

by Georgie Warren
23rd May 2025
AI’s energy price
Artificial Intelligence

AI’s energy price

The UK must focus on data centre research to solve some of the massive infrastructure issues caused by the adoption...

by Peter Warren
21st May 2025
AI and creativity

Digital twins – creating our own image and making our mark in the metaverse

In this month’s PassW0rd, ‘Digitally Resonating’, we tackle living and working in the Artificial Intelligence world of the 21st century...

by Blue Buffery
12th October 2024
Next Post

Teach young offenders software skills to avoid life of crime

'Phone hacking' and why everyone's to blame

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Recent Posts

  • Europe’s digital War of Independence
  • Space cold war warms up
  • Digital ID card row: to be, or not to be

Categories

© 2021 Future Intelligence - Website by Kukoo Creative

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms bellow to register

*By registering into our website, you agree to the Terms & Conditions and Privacy Policy.
All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Opinion
  • Radio & Podcasts
  • Events & Press
  • Tech Jobs
  • Reviews
  • About

© 2021 Future Intelligence - Website by Kukoo Creative

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.
Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?