720-891-1663

Cyberattacks Causing Physical Disruption on the Rise

At least 68 cyberattacks last year caused physical consequences to operational technology (OT) networks at more than 500 locations worldwide. Damage from these attacks ranged up to $100 millon. OT attacks are attacks on the systems that run businesses like manufacturing, transportation and the cities themselves. If you think about all of the computers that […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Feds Say CISA Not Prepared to Defend OT

If that headline doesn’t keep you up at night, I don’t know what will. The Government Accountability Office (GAO) says they have have found inefficiencies in CISA’s information sharing practices, in particular with critical infrastructure stakeholders. They also say that CISA is understaffed for handling OT incidents. Just to make sure everyone is on the […]

Continue reading → [DISPLAY_ACURAX_ICONS]

UK Updates Post-Quantum Crypto Guidance

I have written several times about the need to start thinking about post-quantum crypto. At this point, “Q-Day” is somewhere between this year and ten years from now. If you believe my blog last week, Q-Day could be today. NIST has published draft post quantum standards, but there is a lot more to do besides […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Update for September 30, 2022

Why You Should Wear Contacts While on Video Conferences Researchers in Michigan and China have demonstrated their ability to read what is on your screen while you are on a video conference with 75% accuracy with text as small as 10 mm and a relatively low resolution 720 p camera. Credit: The Register Crooks are […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending July 29, 2022

TSA Updates Cybersecurity Guidelines for Pipeline Operators After the Colonial Pipeline meltdown last year, TSA, who regulates pipeline cybersecurity (don’t ask), issued a set of regulations for pipeline operators to follow. Given that TSA had less than a dozen people in their cybersecurity department and zero industrial IoT expertise, it is not a surprise that […]

Continue reading → [DISPLAY_ACURAX_ICONS]

What Does Remote Bricking of Ukrainian Tractors Mean to US Farmers?

When Russian troops stole millions of dollars of John Deere farm equipment from an authorized Deere dealer, Agrotek-Invest, in Melitopol, Ukraine, they trailered them to Checknya, about 700 miles away. What the Russians did not know is that (a) the equipment has a GPS in it, so Deere knew exactly where they took it and […]

Continue reading → [DISPLAY_ACURAX_ICONS]