-
Thursday, June 26, 2008
Vulnerability Disclosure - What is the Right Answer?
While this story is getting a bit dated, the timing for my article now is intentional. As you may have seen recently, CORE Security released a cyber vulnerability notification for a problem found by one of it’s analysts in a CITECT product, http://www.coresecurity.com/?action=item&id=2186.
This leads us to question whether or not vulnerability disclosure is the right thing to do or not for the SCADA and process control industry. Of course this question comes up time and again for us here at Wurldtech as well. Hardly a day goes by that a vendor or asset owner asks us if we ...
Read full story
-
Wednesday, June 25, 2008
Pneumatic Pump Heads and Bit-Twiddlers
As some of you may have been watching on the SCADASEC email listserv recently, there has been a bit of an uprising… again. Pondering this in a semi satirical state last night (after about the 20th email sent and received on the issue), I started wondering why this happens so often. It finally hit me… we have two very distinct camps on polar opposite ends of the spectrum. Let’s call them pneumatic pumpheads and bit-twiddlers. Now, before any feathers are ruffled, keep in mind that this post is equal-opportunity - everyone is going to be given an equal ration of ...
Read full story
-
Wednesday, June 11, 2008
Process Risk Analysis & Threat Modeling: A Practical Perspective into SCADA and Process Control Cyber Security
In the not too distant past, cutting edge western medicine explained illnesses in terms of humours. If you had a cold, you had too much phlegm, so you would balance your humours by increasing your yellow bile, which was antagonistic to phlegm. Apparently this involved sitting in bed and drinking lots of wine.
Now, as comfortable as this remedy sounds, it has a drawback: it doesn’t work. The idea of humours has some correlation with reality, since it was based on observation, but it is oversimplified. Now we know that the outward symptoms of colds are our body’s attempt to ...
Read full story