RE: [Full-Disclosure] SCADA providers say security not our problem

2003-08-21 Thread Drew Copley
PROTECTED] Subject: [Full-Disclosure] SCADA providers say security not our problem The Factory automation and SCADA systems providers have not shown much willingness to take any responsibility for the use (or misuse) of their systems, having washed their hands of the security

RE: [Full-Disclosure] SCADA providers say security not our problem

2003-08-21 Thread Alan Kloster
Bernie wrote: I believe that like the HIPAA Security rules, regulations should be established to set Security standards which the Power Utilities, as well as and Gas, Water should be held to comply with. They have been trying to come up with a plan. Unfortunately, it appears to lack any

Re: [Full-Disclosure] SCADA providers say security not our problem

2003-08-21 Thread Bernie, CTA
Right on target Michael, and exactly the point most of us in this and related threads have pivoted from. The Blackout was the result of poor or nonexistent system security engineering, implementation, and auditing. We may be able to accept that the initial trigger incident that caused the