http://www.masslive.com/opinion/index.ssf/2014/12/an_aggressive_defense_is_vital.html



*An aggressive defense is vital to protect critical US infrastucture from
cyberattack: Editorial*

[image: Feds Hacked]

In this Wednesday, Sept. 10, 2014, photo, evidence items are displayed at
the Defense Computer Forensics Laboratory (DCFL), in Linthicum, Md. A $10
billion-a-year effort to protect sensitive government data, from military
secrets to Social Security numbers, is struggling to keep pace with an
increasing number of cyber attacks and is unwittingly being undermined by
federal employees and contractors. (AP Photo/Manuel Balce Ceneta)

*Print*
<http://blog.masslive.com/opinion_impact/print.html?entry=/2014/12/an_aggressive_defense_is_vital.html>

*[image: The Washington Post]*
<http://connect.masslive.com/user/WaPo/index.html>By *The Washington Post *
<http://connect.masslive.com/user/WaPo/posts.html>masslive.com
*Follow on Twitter* <https://twitter.com/washingtonpost>
on December 05, 2014 at 4:30 PM
------------------------------


Dangers are growing in cyberspace. Not only are thieves learning to siphon
off millions of credit card numbers and e-mail addresses but elaborate
pieces of malware are capable of spying on whole organizations for long
periods of time, capturing computer screens, keystrokes and data,
transmitting it all to distant servers without being detected.

Symantec, a cybersecurity company, has announced the discovery of a new
example of this sophistication, called Regin, apparently designed for
intelligence collection, and comparable in power and complexity with
Stuxnet, the computer worm reportedly used by the United States a few years
ago to sabotage Iran's uranium enrichment program. The new spyware does not
resemble the evasive bits of code that scoop up credit card data. Rather,
according to Symantec, Regin is built for long-term, under-the-radar
espionage and surveillance; it comes with many modular pieces that can be
custom-fitted to the target of the attack; and it has already been used
against governments, infrastructure operators, businesses, academics and
private individuals.

"It goes to extraordinary lengths to conceal itself and its activities on
compromised computers," the company reported. "Its stealth combines many of
the most advanced techniques that we have ever seen in use." Threats like
this are "rare," the company said, and the sophistication underscores how
significant resources are being poured into this kind of mega-weapon in
cyberspace. The Post's Ellen Nakashima reported that the spyware can also
grab control of cellphone towers and monitor calls.

Although the U.S. military is standing up a major cyber effort, both
offensive and defensive, private-sector networks in the nation are overly
exposed.

But who is behind it? Symantec could not identify the origins. Confirmed
infections have shown up mostly in Russia (28 percent) and Saudi Arabia (24
percent) but none in the United States, Israel or Britain. It may well be
another example of American ingenuity in service of intelligence missions,
like Stuxnet, but the reality of cyberconflict is that fingerprints can
often be difficult to discern. The line between defense and offense, and
between nation-states and other groups, can be hazy. Another security firm,
Cylance, has reported that Iranian groups hacked into a range of
international targets, including airlines, military and energy complexes,
hospitals, telecommunications and other institutions.

Networks in the United States remain vulnerable to intrusion, disruption,
theft, espionage and attacks that could produce physical damage, all
weaknesses that cry out for a more aggressive defense than has been mounted
so far. Although the U.S. military is standing up a major cyber effort,
both offensive and defensive, private-sector networks in the nation are
overly exposed. These networks are the backbone of the economy, health
care, education, transportation, energy and countless other critical
functions. In the future, attacks are certain to be aimed at them with
potentially dire consequences.

Warnings about this have been issued for several years, with insufficient
effect. Adm. Michael S. Rogers, the new head of the National Security
Agency and U.S. Cyber Command, recently predicted a cyberattack on critical
U.S. infrastructure – such as water or electrical systems – in the next
decade, saying that it is "only a matter of when, not if, we are going to
see something dramatic." He added, "This is not theoretical." Or reassuring.




__._,_.___
 ------------------------------
Posted by: "beowulf" <[email protected]>
------------------------------


 Visit Your Group
<https://groups.yahoo.com/neo/groups/grendelreport/info;_ylc=X3oDMTJmMzdxZTBtBF9TAzk3MzU5NzE0BGdycElkAzIwMTk0ODA2BGdycHNwSWQDMTcwNTMyMzY2NwRzZWMDdnRsBHNsawN2Z2hwBHN0aW1lAzE0MTc4MjI2MjI->


 [image: Yahoo! Groups]
<https://groups.yahoo.com/neo;_ylc=X3oDMTJlbDQ2NTVqBF9TAzk3NDc2NTkwBGdycElkAzIwMTk0ODA2BGdycHNwSWQDMTcwNTMyMzY2NwRzZWMDZnRyBHNsawNnZnAEc3RpbWUDMTQxNzgyMjYyMg-->
• Privacy <https://info.yahoo.com/privacy/us/yahoo/groups/details.html> •
Unsubscribe <[email protected]?subject=Unsubscribe>
• Terms of Use <https://info.yahoo.com/legal/us/yahoo/utos/terms/>

__,_._,___

-- 
-- 
Thanks for being part of "PoliticalForum" at Google Groups.
For options & help see http://groups.google.com/group/PoliticalForum

* Visit our other community at http://www.PoliticalForum.com/  
* It's active and moderated. Register and vote in our polls. 
* Read the latest breaking news, and more.

--- 
You received this message because you are subscribed to the Google Groups 
"PoliticalForum" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to