Showing posts with label Cyber Security. Show all posts
Showing posts with label Cyber Security. Show all posts

Monday, July 26, 2010

DTN News: UAE Says BlackBerry Is Security Threat

DTN News: UAE Says BlackBerry Is Security Threat
Source: DTN News / Int'l Media
(NSI News Source Info) DUBAI, United Arab Emirates - July 26, 2010: The United Arab Emirates has declared BlackBerry smartphones a potential threat to national security, saying the devices operate beyond the jurisdiction of national laws and are open to misuse. The move raises concerns of another attempt by the government to control the flow of information in the Arab Gulf nation, which actively censors websites and other forms of media seen as harming national security or conservative local values. At the same time, however, the UAE is trying to establish itself as an international business hub. This is the second major controversy over the Blackberry in the UAE. A year ago, the Middle East country's biggest state-run mobile operator was caught encouraging unwitting BlackBerry users to install software on the devices that could allow outsiders to peer inside. The government has never made fully clear what happened in that case. In the latest flap, the Telecommunications Regulatory Authority voiced fears that the BlackBerry manages data in a way that could allow it to be misused. BlackBerry device were singled out because they are the only phones operating in the country that automatically relay users' information to privately managed data centers overseas, the regulator said. "As a result of how Blackberry data is managed and stored, in their current form, certain Blackberry applications allow people to misuse the service, causing serious social, judicial and national security repercussions," the regulator said in a statement carried on the state news agency late Sunday. It said that BlackBerry devices operate "beyond the jurisdiction" of national laws because they immediately send data abroad to be "managed by a foreign, commercial organization." That is apparently a reference to BlackBerry maker Research in Motion's system of relaying data such as e-mail messages to network servers that are separate from those operated by local mobile providers. The TRA said the devices were launched in the UAE before "safety, emergency and national security legislation" regulating their use was enacted in 2007. It did not specify what changes it is seeking. The comments raised questions about the gadgets' legality in the country, home to the Mideast business hub of Dubai. An official at the TRA said Monday the agency had no further comment, and that no decision about the phones' future in the country had been made. She would not provide her name, as is customary among Emirati government officials. Spokeswomen for BlackBerry maker RIM said the Canadian company did not yet have any comment. Just over a year ago, RIM criticized a directive by UAE state-owned mobile operator Etisalat telling the company's more than 145,000 BlackBerry users to install software described as an "upgrade ... required for service enhancements." RIM said tests showed the update was in fact spy software that could allow outsiders to access private information stored on the phones. It strongly distanced itself from Etisalat's decision, and provided details instructing users how to remove the software.

Friday, July 02, 2010

DTN News: Cyberwar - The Threat From The Internet

DTN News: Cyberwar - The Threat From The Internet
*It is time for countries to start talking about arms control on the internet
Source: DTN News - compiled by Roger Smith from reliable sources including Economist.com
(NSI News Source Info) TORONTO, Canada - July 2, 2010: THROUGHOUT history new technologies have revolutionised warfare, sometimes abruptly, sometimes only gradually: think of the chariot, gunpowder, aircraft, radar and nuclear fission. So it has been with information technology. Computers and the internet have transformed economies and given Western armies great advantages, such as the ability to send remotely piloted aircraft across the world to gather intelligence and attack targets. But the spread of digital technology comes at a cost: it exposes armies and societies to digital attack. The threat is complex, multifaceted and potentially very dangerous. Modern societies are ever more reliant on computer systems linked to the internet, giving enemies more avenues of attack. If power stations, refineries, banks and air-traffic-control systems were brought down, people would lose their lives. Yet there are few, if any, rules in cyberspace of the kind that govern behaviour, even warfare, in other domains. As with nuclear- and conventional-arms control, big countries should start talking about how to reduce the threat from cyberwar, the aim being to restrict attacks before it is too late. The army reboots Cyberspace has become the fifth domain of warfare, after land, sea, air and space (see article). Some scenarios imagine the almost instantaneous failure of the systems that keep the modern world turning. As computer networks collapse, factories and chemical plants explode, satellites spin out of control and the financial and power grids fail. That seems alarmist to many experts. Yet most agree that infiltrating networks is pretty easy for those who have the will, means and the time to spare. Governments know this because they are such enthusiastic hackers themselves. Spies frequently break into computer systems to steal information by the warehouse load, whether it is from Google or defence contractors. Penetrating networks to damage them is not much harder. And, if you take enough care, nobody can prove you did it. The cyber-attacks on Estonia in 2007 and on Georgia in 2008 (the latter strangely happened to coincide with the advance of Russian troops across the Caucasus) are widely assumed to have been directed by the Kremlin, but they could be traced only to Russian cyber-criminals. Many of the computers used in the attack belonged to innocent Americans whose PCs had been hijacked. Companies suspect China of organising mini-raids to ransack Western know-how: but it could just have easily been Western criminals, computer-hackers showing off or disillusioned former employees. One reason why Western governments have until recently been reticent about cyber-espionage is surely because they are dab hands at it, too. As with nuclear bombs, the existence of cyber-weapons does not in itself mean they are about to be used. Moreover, an attacker cannot be sure what effect an assault will have on another country, making their deployment highly risky. That is a drawback for sophisticated military machines, but not necessarily for terrorists or the armies of rogue states. And it leaves the dangers of online crime and espionage. All this makes for dangerous instability. Cyber-weapons are being developed secretly, without discussion of how and when they might be used. Nobody knows their true power, so countries must prepare for the worst. Anonymity adds to the risk that mistakes, misattribution and miscalculation will lead to military escalation—with conventional weapons or cyberarms. The speed with which electronic attacks could be launched gives little time for cool-headed reflection and favours early, even pre-emptive, attack. Even as computerised weapons systems and wired infantry have blown away some of the fog of war from the battlefield, they have covered cyberspace in a thick, menacing blanket of uncertainty. One response to this growing threat has been military. Iran claims to have the world’s second-largest cyber-army. Russia, Israel and North Korea boast efforts of their own. America has set up its new Cyber Command both to defend its networks and devise attacks on its enemies. NATO is debating the extent to which it should count cyberwar as a form of “armed attack” that would oblige its members to come to the aid of an ally. But the world needs cyberarms-control as well as cyber- deterrence. America has until recently resisted weapons treaties for cyberspace for fear that they could lead to rigid global regulation of the internet, undermining the dominance of American internet companies, stifling innovation and restricting the openness that underpins the net. Perhaps America also fears that its own cyberwar effort has the most to lose if its well-regarded cyberspies and cyber-warriors are reined in. Such thinking at last shows signs of changing, and a good thing too. America, as the country most reliant on computers, is probably most vulnerable to cyber-attack. Its conventional military power means that foes will look for asymmetric lines of attack. And the wholesale loss of secrets through espionage risks eroding its economic and military lead. Hardware and soft war If cyberarms-control is to America’s advantage, it would be wise to shape such accords while it still has the upper hand in cyberspace. General Keith Alexander, the four-star general who heads Cyber Command, is therefore right to welcome Russia’s longstanding calls for a treaty as a “starting point for international debate”. That said, a START-style treaty may prove impossible to negotiate. Nuclear warheads can be counted and missiles tracked. Cyber-weapons are more like biological agents; they can be made just about anywhere. So in the meantime countries should agree on more modest accords, or even just informal “rules of the road” that would raise the political cost of cyber-attacks. Perhaps there could be a deal to prevent the crude “denial-of-service” assaults that brought down Estonian and Georgian websites with a mass of bogus requests for information; NATO and the European Union could make it clear that attacks in cyberspace, as in the real world, will provoke a response; the UN or signatories of the Geneva Conventions could declare that cyber-attacks on civilian facilities are, like physical attacks with bomb and bullet, out of bounds in war; rich countries could exert economic pressure on states that do not adopt measures to fight online criminals. Countries should be encouraged to spell out their military policies in cyberspace, as America does for nuclear weapons, missile defence and space. And there could be an international centre to monitor cyber-attacks, or an international “duty to assist” countries under cyber-attack, regardless of the nationality or motive of the attacker—akin to the duty of ships to help mariners in distress. The internet is not a “commons”, but a network of networks that are mostly privately owned. A lot could also be achieved by greater co-operation between governments and the private sector. But in the end more of the burden for ensuring that ordinary people’s computer systems are not co-opted by criminals or cyber-warriors will end up with the latter—especially the internet-service providers that run the network. They could take more responsibility for identifying infected computers and spotting attacks as they happen. None of this will eradicate crime, espionage or wars in cyberspace. But it could make the world a little bit safer.
*This article is being posted from Toronto, Canada By DTN News ~ Defense-Technology News, contact: dtnnews@ymail.com

Wednesday, March 24, 2010

DTN News: Boeing Supports Future Cybersecurity Experts In Collegiate Competition

DTN News: Boeing Supports Future Cybersecurity Experts In Collegiate Competition Source: DTN News / Boeing (NSI News Source Info) ARLINGTON, Va.,- March 24, 2010: Boeing [NYSE: BA] is sponsoring the Western Regional Collegiate Cyber Defense Competition on March 26-28 at California State Polytechnic University in Pomona, Calif. The competition tests students’ abilities to defend a network in a corporate scenario while accomplishing routine business tasks. "We are proud to support the Western Regional Collegiate Cyber Defense Competition as it focuses on the skills necessary to protect networks and information from cyber threats," said Barbara Fast, Boeing vice president of Cyber and Information Solutions. "Industry must help develop and employ the next generation of cybersecurity experts in order to ensure the availability and trustworthiness of our customers’ networks and information." The competition focuses on the operational aspects of managing and protecting an existing network infrastructure. Students from two- and four-year colleges and universities will face a "red team" of hackers trying to disrupt and compromise their networks. Several Boeing employees -- Cal Poly Pomona and competition alumni -- will be on site during the competition in various support roles. Some have served as advisors to student teams and others will participate as red team members. "Our continuing involvement in these skill-building competitions reflects Boeing’s commitment to investing in national and economic security," said Fast. Boeing also sponsored and provided personnel support to the Northeast and Mid-Atlantic Regional Collegiate Cyber Defense Competitions earlier this month. A unit of The Boeing Company, Boeing Defense, Space & Security is one of the world’s largest defense, space and security businesses specializing in innovative and capabilities-driven customer solutions, and the world’s largest and most versatile manufacturer of military aircraft. Headquartered in St. Louis, Boeing Defense, Space & Security is a $34 billion business with 68,000 employees worldwide.

Wednesday, January 20, 2010

DTN News: Lockheed Martin Invests In Cyber Security Talent and Workforce Development

DTN News: Lockheed Martin Invests In Cyber Security Talent and Workforce Development *Academic relationships with cyber institutions provide pipeline while internal efforts strengthen bench
*Source: DTN News / Lockheed Martin (NSI News Source Info) Gaithersburg, Md., - January 20, 2010: Lockheed Martin (NYSE: LMT) Jan 18., announced evolving talent and workforce development initiatives designed to fill the critical need for a certified and trained cyber security workforce. Lockheed Martin’s commitment to this field includes implementation of a Cyber University; university recruiting; cyber career paths; mentoring; knowledge transfer and competitive compensation. In addition, new academic graduate scholarships have recently been awarded to students at Carnegie Melon University, Purdue University and the University of Maryland. “Cyber Security is embedded in everything Lockheed Martin delivers and our people are critical to ensuring mission resilience for our customers. The company recognizes the significance of its cyber workforce and has invested more than $1 million in university recruiting, scholarships and training,” said Rick Johnson, vice president and chief technology officer, Lockheed Martin Information Systems & Global Services. Lockheed Martin has a clearly defined talent management strategy to support cyber security workforce demands. The cyber profession begins with talent sourcing and recruitment and continues with certification, training, and mentoring, to move professionals along an established career track. The Lockheed Martin Cyber University facilitates the training and certification using a blended delivery approach from instructional-led training to professional study groups, lunch-time seminars, and communities of practice. Current and new employees are able to leverage cyber security training and education to include CISSP certification, Security +, and technology training from Lockheed Martin Cyber Security Alliance Partners Cisco and McAfee. Headquartered in Bethesda, Md., Lockheed Martin is a global security company that employs about 140,000 people worldwide and is principally engaged in the research, design, development, manufacture, integration and sustainment of advanced technology systems, products and services. The corporation reported 2008 sales of $42.7 billion. Media Contact: Mary Phillips, 240-252-9425 mary.phillips@lmco.com