Friday, March 19, 2010

Bookmark and Share

Archive for the ‘Cyberterrorism’ Category

Thoughts about CyberTerrorism

A recent article citing FBI’s skeptical view of cyberterrorism caught my eye this morning. Cyberterrorism is a touchy subject, and it’s interesting that the division about the myth/reality status of politically-motivated attacks extends even to divisions of the DHS itself. Overall, it’s been a devisive issue: some well-respected security folks like Bruce Schneier have made convincing arguments about how it’s bogus, while other well-respected security folks like Dorothy Denning have made convincing arguments about why it’s real.

In the context of the overall DHS security posture, it’s clear that the FBI is the odd man out. In other words, the rest of the DHS doesn’t exactly share the FBI’s optimism about terror groups’ lack of initiative, training, or savvy – for example, back in the day when he was the “big cahuna” Tom Ridge told us that ” Terrorists can sit at one computer connected to one network and can create worldwide havoc — don’t necessarily need bomb or explosives to cripple a sector of the economy, or shutdown a power grid.” The former chief “cyberterrorism czar” Richard Clarke told us, “We have to differentiate from an attack that has already happened and the kind of attack that will come… From our perspective, we don’t worry about when; we worry about what they can do and start locking doors.” He’s also said:

Well, the fact that these people are gathering skills in cyber war capability is very troubling, combined with the fact that we know that they’re looking on the Web for hacking tools. We know that, because we’ve seized some of their computers. It suggests to me that Al Qaeda may be trying to grow an indigenous cyber warfare capability. I think it suggests that someday we may see Al Qaeda, if it’s still alive and operating, use cyberspace as a vehicle for attacking infrastructure — not with bombs, but with bytes.

Personally, I don’t really have an opinion about cyberterrorism. However, I think the willingness of the FBI to speak in a manner contrary to the rest of the DHS shows “go-get-’em”-itude on their part. Props to them for fighting the tide of FUD and telling it like it is – these probably won’t be popular comments over at the DHS.

Bookmark and Share

Homeland Security CIO: No ‘Digital Pearl Harbor’ Likely

“It’s highly unlikely that the United States will experience a crippling “digital Pearl Harbor,” the CIO of homeland security says. “While this is a possibility, the probability is relatively low,” Steven Cooper said in an online chat sponsored by The Washington Post. “We have done a lot in the federal arena to provide multilayered security for our digital environments and continually ‘red team’ our networks and applications to find vulnerabilities.”
. . .

Bookmark and Share
“Make sense of what to deploy to protect your network.”
Blog Cloud

The Law: Fear It Administrative Cruft (16)
Analysts (31)
Apple (25)
AppSec (12)
Assessments (2)
Auditors (2)
Biometrics (4)
Blogs (13)
Breaches (21)
Buzzwords (2)
By Grabthar's Hammer!! (1)
Certifications (1)
Change Management (1)
Cheezburger Network (1)
Chupacabra (1)
Cloud Computing Security (4)
Collaborative Strategy Guild (2)
Compliance (4)
Copyright (9)
Credit Cards (3)
Crypto (11)
CXO Summit 2010 (1)
Cyberterrorism (2)
Data Protection (2)
DHS (25)
eBay (1)
Emergence (1)
End-to-End Encryption (2)
England (1)
Financial Fraud (1)
FISAP (1)
Forensics (5)
FTC Red Flad Rules (1)
FUD (12)
gnisreveR (2)
Google (2)
Holidays! (3)
Humor (16)
Identity Theft (4)
James Bond Shiz (1)
Legal Shiz (13)
Linux (3)
Malware (35)
Marketing and PR (9)
Messaging Security (1)
Microsoft (26)
Monoculture (3)
Mouth-Frothing (2)
Musings (17)
Open Source (3)
Oracle (21)
Outsourcing (4)
Paris Hilton (1)
Passwords (1)
PCI (4)
Phish-Eye (8)
Phones (5)
Planes (1)
Privacy (1)
Programming (1)
QDSP Blues (15)
Research (30)
Resources (6)
Rhesus Monkeys (2)
Risk Management (18)
RSA 2009 (1)
RSA 2010 (1)
SAML (1)
SAN (1)
SC Mag Blues (1)
SCADA (1)
Security Curve (8)
SecurityCurve Speaking (2)
SIEM and Log Management (5)
Social Networking (1)
SOX (1)
Speaking (2)
Spinach (1)
Spy Stuff (1)
Stealing Stuff (8)
Storage (1)
Symantec (7)
Tarot (1)
Teleological suspension of the ethical (3)
The Great Borack (1)
The Law: Fear It (10)
The Old Man of the Mountain (1)
The Regs (5)
Tokenization (1)
Useless Shizz (13)
Vendors (37)
Virtual Worlds (2)
Voting (2)
Vulnerabilities (40)
Walt Disney (2)
Wi-Fi (16)

WP Cumulus Flash tag cloud by Roy Tanck and Luke Morton requires Flash Player 9 or better.

Archives