Download Download

Total Page:16

File Type:pdf, Size:1020Kb

Download Download Te New Nuke? by Yusuf Sezer Over the past few decades, the major nations and set a new precedent for the possibilities of cyber of the world have readily adopted and integrated weaponry. Unlike the malware that came before it, computer technologies into their social, economic, “Stuxnet wasn’t about industrial espionage: it didn’t political, and military sectors. Trading on the stock manipulate, or erase information. Rather, Stuxnet’s market, conducting military operations, directing goal was to physically destroy a military target… the world’s fight trafc, and delivering electricity to literally” (Farwell and Rohozinski). millions of people are just a few examples of the many Although Stuxnet was successful in slowing Iran’s critical real-world processes that rely on computer nuclear program, the scale of the damage it caused is systems. As events in the past few years have shown, relatively small when compared to the full-potential these computer systems—and the real-world of cyber weapons. In Te Basics of Cyber Warfare, processes that depend on them—can be exploited Jason Andress and Steve Winterfeld point out that with “‘illegal or legally ambiguous digital tools’ like cyber weapons could be employed as “Weapons website defacements, information thef, website of Mass Disruption.” Te idea is to use cyber parodies, DoS attacks, virtual sit-ins, and virtual weapons to disrupt computer systems that control sabotage” (Hampson 514). Tus, nations that have major infrastructure (Andress and Winterfeld 21). high levels of technological development—and thus In a speech at the Cybersecurity and Consumer high technological dependence—are vulnerable to Protection Summit, President Obama recognized cyber-attacks (Sanger). Tis fundamental weakness that: shared by major world powers has ushered in a new much of [America’s] critical infrastructure— type of militaristic weapon that poses a threat to our fnancial systems, our power grid, health global peace. systems—run on networks connected to the Te defnition of a cyber weapon varies from Internet, which is hugely empowering but source to source, but most agree that cyber weapons also dangerous, and creates new points of refer to the strategic use of malware—programs vulnerability that we didn’t have before. (Obama) that are designed to damage or disrupt computer Indeed, successful cyber-attacks on computer systems—for militaristic purposes. Perhaps the most systems that control major infrastructure could notable example of a cyber weapon is Stuxnet, a piece cripple the nation. Patrick T. Hemmer considers of malware that was designed to infltrate computer the ramifcations of a successful large-scale cyber- systems in Iran’s Natanz uranium enrichment attack on infrastructure: “Supervisory control and plant (Farwell and Rohozinski). Although no data acquisition systems (SCADA) that control the government has ofcially claimed responsibility functions of power, nuclear, sewer, and air defense for the development and deployment of Stuxnet, systems (among others) could either be crippled or interviews with both former and current American, engineered to create massive nuclear and biological Israeli, and European ofcials strongly suggest that emergencies” (28). Hemmer goes on to state the attack was orchestrated by Israel and the United that “government attempts to counter or defend States (Sanger). Farwell and Rohozinski explain that against an attack of this nature would be limited Stuxnet’s goal was to destroy the plant’s centrifuges and piecemeal” (28). Te cyber-attack situation by causing them to spin much faster than normal, described by Hemmer could have a devastating thus slowing Iran’s nuclear program—an objective toll on the military and civilian population of the that aligns with American and Israeli political goals. targeted nation. Tis is particularly concerning Stuxnet succeeded in destroying many centrifuges due to the strong correlation that exists between a Aisthesis 31 Volume 8, 2017 Te New Nuke? country’s level of technological development and its are closely guarded secrets. As such, it is very likely vulnerability to such cyber-attacks. Tis correlation that an adversary forms a potentially uneducated implies that the world’s major countries are also the opinion as to the efectiveness of their defenses” (20). most vulnerable. David E. Sanger of Te New York Tis fear of inadequate defenses could theoretically Times concluded that “no country’s infrastructure push major nations to develop more advanced is more dependent on computer systems, and thus weapons and defenses, thus fueling a cyber arms more vulnerable to [cyber-attack], than that of the race. Together, these factors would create a more United States” (Sanger). volatile political climate with a higher potential for As such, the development of major cyber weapons signifcant destruction. by developed nations could in fact pose a similar Te thought of a future cyber war is certainly situation to that of the nuclear arms race of the Cold a frightening one. Cyber weapons have enormous War; developed nations could use cyber weapons as potential for destruction and, as we have seen, have deterrents. Te idea is that if one country initiates qualities that make them especially hazardous to attack, the other will respond in kind, thus resulting in world peace when used as militaristic weapons. It “mutually assured destruction”—a political doctrine appears, though, that world leaders are aware of the that characterized Soviet-American relations during potential risks of such weapons, at least to a certain the Cold War (de Castella). At frst glance, this extent. For example, when questioned about why he theory fts perfectly; cyber weapons do indeed have has not employed cyber weapons against political vast destructive capabilities, and President Obama targets like China and North Korea, President has already referred to the feld of cyber security as Obama “has repeatedly told his aides that there a “cyber arms race” (Obama). However, there are are risks to using—and particularly to overusing— a few critical diferences between cyber weapons the [cyber weapon]” (Sanger). President Obama’s and nuclear weapons that make them particularly restraint regarding the use of cyber weapons shows dangerous to world peace. that he is aware of the risks that such weapons carry. Unlike nuclear weapons during the Cold War, Namely, it shows that President Obama aims to cyber weapons can also be developed by groups or avoid triggering a cyber arms race between world people who are not afliated with a government, powers, an escalation that would further agitate an which creates the potential for cyber terrorism. As already tense political climate and could potentially early as 1991, a report by the National Research lead to destruction on a massive scale. On the other Council recognized that “tomorrow’s terrorist may hand, there is a great deal of concerning evidence be able to do more damage with a keyboard than suggesting that international afairs may indeed be with a bomb” (7). Furthermore, cyber weapons allow pushing the world towards a cyber war. In “Stuxnet the user to leverage “anonymity and deniability and the Future of Cyber War,” Farwell and Rohozinski while conducting military campaigns in cyberspace” point out that “the United States views cyberspace (Wilson); this makes it difcult to verify the origin of as a war-fghting domain that favours ofense. Its an attack and thus poses less risk of retaliation to the policy explicitly seeks superiority in that domain” user. Tis shield of anonymity—a weapon-trait that (Farwell and Rohozinski). Tis approach to cyber is not possessed by nuclear weapons—weakens the space resembles the deterrent-based diplomatic political doctrine of mutually assured destruction. approaches that characterized and fueled the nuclear Afer all, how can you retaliate against an enemy that arms race of the Cold War. More worryingly, recent you can’t even identify? When combined, these two cyber-attacks have already strained the relationship attributes can create a very tense climate between between the United States and other major world major world powers: Not only is the promise powers. At the beginning of October, for example, of mutually assured destruction a less efective the United States accused Russia of meddling with deterrent, but there are also more potential sources the upcoming presidential election by hacking the of attack. Tis tension can be worsened by another Democratic National Committee’s computers—a attribute of cyber weapons that is summarized by cyber-attack that Russia is vehemently denying Hemmer: “Specifc capabilities of [cyber weapons]… involvement in. On the matter, Senator Ben Sasse Aisthesis 32 Volume 8, 2017 Te New Nuke? has expressed his belief that the United States must Langner, Ralph. “Stuxnet: Dissecting a Cyberwarfare respond with “a strong diplomatic, political, cyber Weapon.” IEEE Security and Privacy, vol. 9, no. 3, and economic response” (qtd. in Nakashima). 2011, pp. 49-51. Equally troubling is that Iran has responded to the Stuxnet attack by forming a military cyber unit Nakashima, Ellen. “U.S. Government Ofcially that is similar in purpose to that of the United Accuses Russia of Hacking Campaign to In- States Cyber Command. On the matter, “Brig. Gen. terfere with Elections.” Te Washington Post, 7 Gholamreza Jalali, the head of Iran’s Passive Defense Oct. 2016, www.washingtonpost.com/world/ Organization, said that the Iranian military was national-security/us-government-ofcially-ac- prepared ‘to fght our enemies’ in ‘cyberspace and cuses-russia-of-hacking-campaign-to-influ- Internet warfare’” (qtd. in Sanger). ence-elections/2016/10/07/4e0b9654-8cbf-1 While computer systems and cyber space have 1e6-875e-2c1bfe943b66_story.html?utm_ter- allowed us to vastly improve nearly every aspect m=.3bf9632c6d48. Accessed 28 Oct. 2016. of human existence, they have also lef us with an existential crisis. Te more we incorporate technology National Research Council. “Overview and into real-world processes, the more we put ourselves Recommendations.” Computers at Risk: Safe at risk of serious cyber-attacks.
Recommended publications
  • Analysis of Cyberwarfare Ethics As It Pertains to Civilian Computer Networks/Infrastructures
    Analysis of Cyberwarfare Ethics as It Pertains to Civilian Computer Networks/Infrastructures Vanessa Paradine Terms of Reference and Scope The Department of Defense (DoD) currently operates more than fifteen thousand different computer networks across four thousand military installations around the world, with as many as seven million DoD computers and telecommunications tools in use in eighty-eight countries.1 These networks experience over six million unauthorized probes per day.2 Due to the close integration of DoD and commercial networks, an attack within the cyber domain may significantly impact critical civilian infrastructures and networks. For the purpose of this article, the following definitions are pro­ vided: • Cyberspace, as defined by the National Security Presidential Di­ rective 541H0meland Security Presidential Directive 23, is "the interdependent network of information technology infrastruc­ tures, and includes the Internet, telecommunications networks, computer systems, and embedded processors and controllers in critical industries."3 • Cyberspace operations is defined as "the employment of cy­ berspace capabilities where the primary purpose is to achieve military objectives or effects in or through cyberspace."4 • Cyberwarfare/cyberattack has not been defined by the Depart­ ment of the Defense (DoD); however, according to Deputy Defense Secretary William J. Lynn III, it can include a range of things-"from exploitation and exfiltration of data to degrada­ tion of networks to destruction of networks or even physical equipment, physical property."5 • Cyber Threats6 o Virtual-nonkinetic threats to DoD information networks that are just as real and damaging as physical threats. 34 Internatianal Journal of Intelligence Ethics, Vol. 4, No. 1 / Spring/Summer 2013 Analysis of Cyberwarfare Ethics 35 o Physical-kinetic threats mixed with nonkinetic threats; can severely impact the effectiveness of military joint operations.
    [Show full text]
  • Attribution and Response to Cybercrime/Terrorism/Warfare Susan W
    Journal of Criminal Law and Criminology Volume 97 Article 2 Issue 2 Winter Winter 2007 At Light Speed: Attribution and Response to Cybercrime/Terrorism/Warfare Susan W. Brenner Follow this and additional works at: https://scholarlycommons.law.northwestern.edu/jclc Part of the Criminal Law Commons, Criminology Commons, and the Criminology and Criminal Justice Commons Recommended Citation Susan W. Brenner, At Light Speed: Attribution and Response to Cybercrime/Terrorism/Warfare, 97 J. Crim. L. & Criminology 379 (2006-2007) This Symposium is brought to you for free and open access by Northwestern University School of Law Scholarly Commons. It has been accepted for inclusion in Journal of Criminal Law and Criminology by an authorized editor of Northwestern University School of Law Scholarly Commons. 0091-4169/07/9702-0379 THE JOURNALOF CRIMINAL LAW & CRIMINOLOGY Vol. 97. No. 2 Copyright 0 2007 by NorthwesternUniversity. Schoolof Low Printedin U.S.A. "AT LIGHT SPEED": ATTRIBUTION AND RESPONSE TO CYBERCRIME/TERRORISM/WARFARE SUSAN W. BRENNER* This Article explains why and how computer technology complicates the related processes of identifying internal (crime and terrorism) and external (war) threats to social order of respondingto those threats. First, it divides the process-attribution-intotwo categories: what-attribution (what kind of attack is this?) and who-attribution (who is responsiblefor this attack?). Then, it analyzes, in detail, how and why our adversaries' use of computer technology blurs the distinctions between what is now cybercrime, cyberterrorism, and cyberwarfare. The Article goes on to analyze how and why computer technology and the blurring of these distinctions erode our ability to mount an effective response to threats of either type.
    [Show full text]
  • Cognitive Warfare.Pdf
    1 Table of Contents Executive Summary 3 Introduction 5 Evolution of Non-Kinetic Warfare 6 Origins 6 Psychological Warfare (PsyOps) 7 Electronic Warfare (EW) 7 Cyberwarfare 8 Information Warfare 8 Cognitive Warfare 9 Goals of Cognitive Warfare 11 Destabilization 12 Case 1: Destabilization through Confusion 13 Case 2: Destabilization by Sowing Division 15 Case 3: Destabilization as a Means to Influence 17 Influence 20 Case 1: Influencing to Recruit 21 Case 2: Influencing Policy Enactment 22 Case 3: Influencing as a Means to Destabilize 23 Future Threats 27 Looking Ahead 27 Threat 1: Ease of Selection and Virality 29 Threat 2: A New Age of Truth 30 Threat 3: Cyber-induced Institutional Discomfort and Distrust 31 Threat 4: Biological and Therapeutic Emotional Manipulation 32 Threat 5: Enhanced Recruitment of Agents 33 Strategy Recommendations 35 Threat Recognition Framework and Criteria 35 Risk Assessment 36 Organizational Implementations 37 Offensive Considerations 39 Closing Thoughts 40 Bibliography 41 2 Executive Summary Warfare has shifted dramatically over the past several decades, moving away from the physical threats of conventional warfare. War now moves towards the social and ideological threats brought about by mass media and advances in technology. The advent of this new type of warfare is different from anything we have seen before. Although it takes elements from previous types of hybrid warfare, the reach and level of impact it possesses make it far more dangerous than its predecessors. We have dubbed this new way of war cognitive warfare. ​ ​ Cognitive warfare, although sharing various similarities to other non-conventional and non-kinetic types of warfare/operations, is ultimately unique in its execution and purpose.
    [Show full text]
  • Civilians in Cyberwarfare: Conscripts
    Civilians in Cyberwarfare: Conscripts Susan W. Brenner* with Leo L. Clarke** ABSTRACT Civilian-owned and -operated entities will almost certainly be a target in cyberwarfare because cyberattackers are likely to be more focused on undermining the viability of the targeted state than on invading its territory. Cyberattackers will probably target military computer systems, at least to some extent, but in a departure from traditional warfare, they will also target companies that operate aspects of the victim nation’s infrastructure. Cyberwarfare, in other words, will penetrate the territorial borders of the attacked state and target high-value civilian businesses. Nation-states will therefore need to integrate the civilian employees of these (and perhaps other) companies into their cyberwarfare response structures if a state is to be able to respond effectively to cyberattacks. While many companies may voluntarily elect to participate in such an effort, others may decline to do so, which creates a need, in effect, to conscript companies for this purpose. This Article explores how the U.S. government can go about compelling civilian cooperation in cyberwarfare without violating constitutional guarantees and limitations on the power of the Legislature and the Executive. * NCR Distinguished Professor of Law and Technology, University of Dayton School of Law. ** Associate, Drew, Cooper & Anding, P.C., Grand Rapids, Michigan. 1011 1012 Vanderbilt Journal of Transnational Law [Vol. 43:1011 TABLE OF CONTENTS I. INTRODUCTION .............................................................
    [Show full text]
  • The Ethics of Cyberwarfare Randall R
    This article was downloaded by: [University of Pennsylvania] On: 28 February 2013, At: 08:22 Publisher: Routledge Informa Ltd Registered in England and Wales Registered Number: 1072954 Registered office: Mortimer House, 37-41 Mortimer Street, London W1T 3JH, UK Journal of Military Ethics Publication details, including instructions for authors and subscription information: http://www.tandfonline.com/loi/smil20 The Ethics of Cyberwarfare Randall R. Dipert a a SUNY (State University of New York) at Buffalo, NY, USA Version of record first published: 16 Dec 2010. To cite this article: Randall R. Dipert (2010): The Ethics of Cyberwarfare, Journal of Military Ethics, 9:4, 384-410 To link to this article: http://dx.doi.org/10.1080/15027570.2010.536404 PLEASE SCROLL DOWN FOR ARTICLE Full terms and conditions of use: http://www.tandfonline.com/page/terms-and- conditions This article may be used for research, teaching, and private study purposes. Any substantial or systematic reproduction, redistribution, reselling, loan, sub-licensing, systematic supply, or distribution in any form to anyone is expressly forbidden. The publisher does not give any warranty express or implied or make any representation that the contents will be complete or accurate or up to date. The accuracy of any instructions, formulae, and drug doses should be independently verified with primary sources. The publisher shall not be liable for any loss, actions, claims, proceedings, demand, or costs or damages whatsoever or howsoever caused arising directly or indirectly in connection with or arising out of the use of this material. Journal of Military Ethics, Vol. 9, No. 4, 384Á410, 2010 The Ethics of Cyberwarfare RANDALL R.
    [Show full text]
  • Cyber War Law, Ethics & Policy
    The Internet in Bello: Cyber War Law, Ethics & Policy Seminar held 18 November 2011, Berkeley Law Kate Jastram and Anne Quintin1 I. Introduction .................................................................................................................... 2 II. Summary of presentations and recommendations ................................................... 2 A. Significance of the issue and applicability of IHL/LOAC to cyber operations .......... 3 B. Insights on specific IHL/LOAC principles and definitions ........................................ 4 C. The need for, and obstacles to, greater U.S. engagement ..................................... 5 D. Cyber speed ............................................................................................................. 6 E. Unique role of the private sector ............................................................................. 6 F. Recommendations for further reflection ................................................................. 6 III. Opening remarks by David Caron ................................................................................ 7 IV. Preparing the Battlefield: The Best Defense ............................................................... 8 A. Comments by Michael Nacht ................................................................................. 8 B. Comments by Sir Daniel Bethlehem ...................................................................... 11 C. Comments by Abraham Sofaer .............................................................................
    [Show full text]
  • Controlling Cyberwarfare International Laws of Armed Conflict and Human Rights in the Cyber Realm
    Controlling Cyberwarfare International Laws of Armed Conflict and Human Rights in the Cyber Realm by William James Jordan A thesis presented to the University of Waterloo in fulfillment of the thesis requirement for the degree of Doctor of Philosophy in Philosophy Waterloo, Ontario, Canada, 2021 © William James Jordan 2021 Examining Committee Membership The following served on the Examining Committee for this thesis. Thedeci­ sion of the Examining Committee is by majority vote. External Examiner: Col. David Barnes Professor, Department of English and Philosophy United States Military Academy Supervisor: W. Mathieu Doucet Associate Professor, Department of Philosophy University of Waterloo Internal Member: Brian D. Orend Professor, Department of Philosophy University of Waterloo Internal Member: Patricia A. Marino Professor, Department of Philosophy University of Waterloo Internal­External Member: Veronica M. Kitchen Associate Professor, Department of Political Science University of Waterloo ii Author’s Declaration I hereby declare that I am the sole author of this thesis. This is a true copy of the thesis, including any required final revisions, as accepted by my ex­ aminers. I understand that my thesis may be made electronically available to the pub­ lic. iii Abstract Cyberwarfare, military activities in cyberspace conducted by a state against another state and intended to disrupt or destroy computing or communica­ tion systems or data, is a recent addition to the warfaring arsenal. The in­ ternational laws of armed conflict set out an obligation for states at warto protect civilians from the effects of the conflict. As societies continue toex­ pand their activities in the cyber realm, the risk of cyberwarfare negatively affecting the civilian population increases.
    [Show full text]
  • Understanding Cyberwarfare Lessons from the Russia-Georgia War
    Understanding Cyberwarfare Lessons from the Russia-Georgia War Sarah P. White March 20, 2018 Understanding Cyberwarfare: Lessons from the Russia-Georgia War Capt. Sarah P. “Sally” White is a cyberspace operations officer in the US Army. She is currently pursuing her PhD in the Harvard Department of Government, where her research interests include military innovation and comparative cyberspace doctrine. She has served in the 82nd Airborne Division and the 780th Military Intelligence Brigade (Cyber). Following graduate school, she will serve as an instructor in the West Point Department of Social Sciences. Understanding Cyberwarfare: Lessons from the Russia-Georgia War Cyberattacks had become an established tool attacks, with the highest levels of online of statecraft by the time they were used against activity coinciding with the Russian invasion of the Republic of Georgia in the summer of South Ossetia on August 8, 9, and 10.3 Even the 2008, albeit one without a legal framework and National Bank of Georgia had to suspend all 4 whose long-term implications remained poorly electronic services from August 8–19. While 1 understood. Nevertheless, the war between there is strong political and circumstantial Russia and Georgia that took place in August of evidence that the attacks were encouraged by that year was remarkable for its inclusion of a the Russian state, definitive technical series of large-scale, overt cyberspace attacks attribution—and thus definitive legal that were relatively well synchronized with culpability—have remained elusive. conventional military operations. Conducted The cyberattacks had little effect on by an army of patriotic citizen hackers, the conventional forces and were not decisive to 5 cyber campaign consisted of distributed denial the outcome of the conflict, but they of service (DDoS) attacks and website nevertheless offer significant lessons on the defacements that were similar in nature but character of modern warfare for scholars of different in method to what had occurred in conflict and military studies.
    [Show full text]
  • The Rise of Cyber Warfare: the Digital Age and American Decline
    The Rise of Cyber Warfare The Digital Age and American Decline Hanyu Chwe In May 2007, unknown attackers de- advantages in cyberspace; the increasing clared cyberwar on Estonia. Estonians importance of cyberwarfare will accelerate woke up to find that the websites of their the relative decline of American military banks, newspapers, and government agen- power. cies had been systematically dismantled. This was one of the world’s first cyberwar- For the purposes of this paper, I define fare attacks; I argue that it won’t be the cyberwarfare as the use of computer pro- last. grams to attack, disrupt, destroy, disable, In the future, the amount of cyberwar- or steal anything of military, economic or fare will increase drastically. First, the in- general strategic value or e↵orts to defend creased value of cyberspace increases the against such attacks. I am not considering incentives to wage cyberwarfare. Second, industrial corporate espionage, cyber at- the logic of cyberwarfare nullifies several tacks meant to aid the use of conventional mechanisms that constrain territorial war. military force, or the use of internet media Finally, the o↵ensive advantage inherent to organize social action. In my definition, in cyberwarfare exacerbates the security cyberwarfare is not intentionally accompa- dilemma. The United States lacks many nied by corresponding actions in the real of its traditional military and economic world. Cyberwarfare Incentives The strategic and economic value of state needs to guard its cyberspace in order cyberspace is huge. Facebook and to ensure stability. Google were worth 200 billion dollars It’s unlikely internet reliance will de- and 400 billion dollars in 2014 respec- crease.
    [Show full text]
  • Introduction: Cyber and the Changing Face of War
    University of Pennsylvania Carey Law School Penn Law: Legal Scholarship Repository Faculty Scholarship at Penn Law 4-2015 Introduction: Cyber and the Changing Face of War Claire Oakes Finkelstein University of Pennsylvania Carey Law School Kevin H. Govern Ave Maria School of Law Follow this and additional works at: https://scholarship.law.upenn.edu/faculty_scholarship Part of the Computer Law Commons, International Law Commons, International Relations Commons, Internet Law Commons, Military, War, and Peace Commons, National Security Law Commons, Science and Technology Law Commons, and the Science and Technology Studies Commons Repository Citation Finkelstein, Claire Oakes and Govern, Kevin H., "Introduction: Cyber and the Changing Face of War" (2015). Faculty Scholarship at Penn Law. 1566. https://scholarship.law.upenn.edu/faculty_scholarship/1566 This Article is brought to you for free and open access by Penn Law: Legal Scholarship Repository. It has been accepted for inclusion in Faculty Scholarship at Penn Law by an authorized administrator of Penn Law: Legal Scholarship Repository. For more information, please contact [email protected]. Introduction Cyber and the Changing Face of War Claire Finkelstein and Kevin Govern I. War and Technological Change In 2012, journalist David Sanger reported that the United States, in conjunction with Israel, had unleashed a massive virus into the computer system of the Iranian nuclear reactor at Natanz, where the Iranians were engaged in enriching uranium for use in nuclear weaponry.1 Operation "Olympic Games" was conceived as an alternative to a kinetic attack on Iran's nuclear facilities. It was the firstma jor offensive use of America's cyberwar capacity, but it was seen as justified because of the importance of preempt­ ing Iran's development of nuclear weapons.
    [Show full text]
  • Bitdefender: the Indelible Impact of COVID 19 on Cybersecurity
    10 IN 10 STUDY THE INDELIBLE IMPACT OF COVID-19 ON CYBERSECURITY WWW.BITDEFENDER.COM GRAVITYZONE™ THE SECURITY PLATFORM FOR END-TO-END BREACH AVOIDANCE 50% HAD NO PHISHING/WHALING CONTINGENCY PLAN IN ATTACKS WERE THE MOST PLACE FOR COVID-19 COMMON TYPE OF ACCORDING TO ATTACK TO SEE AN INCREASE DURING COVID- INFOSEC 19 86% ADMITTED THAT 25% ARE CONCERNED ATTACKS WERE ON THE THAT BAD ACTORS WILL PROFESSIONALS RISE DURING THIS PERIOD TARGET PEOPLE WORKING FROM HOME 81% BELIEVE THAT COVID- FOLLOWING COVID-19, 19 WILL CHANGE THE WAY NEARLY A THIRD INTEND THEIR BUSINESSES TO KEEP LEARNINGS OF OPERATE LONG-TERM INCREASING IT SECURITY TRAINING AND 24/7 IT SUPPORT GRAVITYZONE™ THE SECURITY PLATFORM FOR END-TO-END BREACH AVOIDANCE A LACK OF FORWARD PLANNING COMES AT GREAT RISK 75% Half of infosec professionals (50%) revealed that their organisations didn’t have a contingency plan in place, or didn’t know if they did, for a situation like COVID-19 or a similar scenario. Question: Did your organisation have a contingency plan in place for a situation like COVID-19 or something similar that could have resulted in a similar outcome (eg. people working from home)? GRAVITYZONE™ THE SECURITY PLATFORM FOR END-TO-END BREACH AVOIDANCE 86% of infosec professionals admitted that attacks in the most common attack vectors were on the rise during COVID-19. GRAVITYZONE™ THE SECURITY PLATFORM FOR END-TO-END BREACH AVOIDANCE BUSINESS OPERATIONS WILL CHANGE LONG-TERM 75% Infosec professionals know that strategic changes need to be made rapidly. The significant majority (81%) believe that COVID-19 will change the way their businesses operate in the long-term — a figure that jumps to 92% for those working in energy and 87% for those working in hospitality.
    [Show full text]
  • Cyberwarfare Conjures up Images of Information Warriors Unleashing
    Assessing the Risks of Cyber Terrorism, Cyber War and Other Cyber Threats: James A. Lewis Center for Strategic and International Studies December 2002 Cyber-warfare conjures up images of information warriors unleashing vicious attacks against an unsuspecting opponent’s computer networks, wreaking havoc and paralyzing nations. This a frightening scenario, but how likely is it to occur? What would the effects of a cyber attack be on a potential opponent? Cyber attacks, network security and information pose complex problems that reach into new areas for national security and public policy. This paper looks at one set of issues – those related to cyber-terrorism and cyber attacks on critical infrastructure and their implications for national security. Cyber-terrorism is “the use of computer network tools to shut down critical national infrastructures (such as energy, transportation, government operations) or to coerce or intimidate a government or civilian population.” The premise of cyber terrorism is that as nations and critical infrastructure became more dependent on computer networks for their operation, new vulnerabilities are created – “a massive electronic Achilles' heel.” A hostile nation or group could exploit these vulnerabilities to penetrate a poorly secured computer network and disrupt or even shut down critical functions. Much of the literature on cyber-terrorism assumes that the vulnerability of computer networks and the vulnerability of critical infrastructures are the same, and that these vulnerabilities put national security at a significant risk. Given the newness of computer network technology and the rapidity with which it spread into economic activity, these assumptions are not surprising. A closer look at the relationships between computer networks and critical infrastructures, their vulnerability to attack, and the effect on national security, suggests that the assumption of vulnerability is wrong.
    [Show full text]