On The Insider: Jonas Brothers Breakup?
BNET Business Network:
BNET
TechRepublic
ZDNet

January 29th, 2009

"Zombies ahead!" sign says something about SCADA security

Posted by Adam O'Donnell @ 8:30 pm

Categories: Uncategorized

Tags: Security, SCADA, Zombie, Enterprise Software, Software, Adam O'Donnell

An electronic road sign hacked to alert drivers to hoards of the undead provides a nice pedagogical example of why SCADA security is such a “big deal”.

Earlier this week a road sign was hacked to warn drivers about zombies disturbing their evening commute. The hack itself was trivial: an intrepid individual discovered that electronic road signs shared a common default password. The default password would have been discovered and publicized years ago if the systems were connected to the internet, but they were left alone for years as very few people had the gumption to walk up to one of the signs and attempt what is essentially a dictionary attack against the authentication mechanism. Without the forcing function that is sustained attack, engineers have no reason to improve the security of their systems.

It seems that everyone laughed off the hack as a simple gag, but you are left to wonder what security problems that already exist in systems that are semi-attached to the grid.

There are a large class of systems that are semi-attached to the grid which do have similar security problems. Known as SCADA (Supervisory Control And Data Acquisition) Systems, these computers are responsible for controlling physical plant like nuclear reactors and oil refineries. Many of these systems were deployed years ago, well before the information security industry fully understood code quality problems and how they can be exploited by attackers. That is all well and good as long as you can guarantee an air-gap between the control network and anything a human being can touch.

Maintaining a guarantee that none of the systems will touch a publicly accessible network is pretty challenging for ten to twenty years as you bring on new staff that may not know why the air gap was originally put into place. Eventually someone hooks up the SCADA system network to a PC that provides a nice Windows XP-based visualization interface, and they also hook it up to the internet so they can get pages at home when something goes wrong.

The Feds have known about this issue for some time, and have invested heavily in improving SCADA system security. Hopefully they complete the job before some hacker discovers the system, and well… it’s “Zombies ahead!” time.

Adam O'DonnellAdam J. O'Donnell, Ph.D. is an R&D engineer who has focused on computer security since 2000. He currently is the Director of Emerging Technologies at Cloudmark, a messaging security company located in San Francisco. See his full profile and disclosure of his industry affiliations.

Email Adam O'Donnell

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 19 Talkback(s)
RE: ???Zombies ahead!??? sign says something about SCADA security
I'm amazed brute force password attacks can still work. DECADES ago VAX/VMS had a "3 strikes and you're locked out" policy. Wait 15 minutes since last attempt to login before it will even check your password before saying "Invalid password."... (Read the rest)
Posted by: redking44 Posted on: 04/08/09 You are currently: a Guest | | Terms of Use
Security of the Grid  Andrew Merrick | 01/30/09
This isn't SCADA  Vitaly McLain | 01/30/09
This is the kind of thinking that will get you into trouble...  Bob Radvanovsky | 02/01/09
Digital Road signs are SCADA  eric.murphy@... | 02/06/09
RE: ?Zombies ahead!? sign says something about SCADA security  ksingletary | 01/30/09
Can SCADA be tunneled on more secure protocols?  Roque Mocan | 01/30/09
SCADA  Aussie_Troll | 01/30/09
^ FUD  metac0m@... | 01/31/09
I dunno about that, but...  James T. Kirk | 02/02/09
No special devices needed  Vitaly McLain | 01/31/09
security was enough  Aussie_Troll | 02/01/09
Something smaller...leading to something bigger?  Bob Radvanovsky | 02/01/09
Why? Let's look at the scenario at 9/11.  vilppuu@... | 02/02/09
What defines the term "SCADA"?  Bob Radvanovsky | 02/01/09
Pixelated Aliens  clovenlife | 02/02/09
Re: Pixelated Aliens  Vitaly McLain | 02/03/09
RE: ?Zombies ahead!? sign says something about SCADA security  vilppuu@... | 02/02/09
Hordes, not hoards  LeonBA | 03/06/09
RE: ???Zombies ahead!??? sign says something about SCADA security  redking44 | 04/08/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here