October 07, 2017

Security of infrastructure

scada system

Report: Power Supply Interruption Biggest Cyber-Attack Concern(Link)


<Summary>
❑ Increased connectivity of industrial control systems is a fear opening the potential of new threats. It can create opportunities for cyber-criminals.
* Without sufficient processing power to run virus scans.
* Lack of encryption or authorization on communications channels.
* Limited security for end points
❑ Cyber attacks on national infrastructure can confuse our economy and society.
❑ To defend against attacks on the infrastructure, comprehensive visibility of entire networks should be built.


<fragmentary thought>
It is natural to attack the national infrastructure in the actual cyber-operation doctrine. But most of the country's infrastructure focuses on operations rather than security. Because of a fear that unpredictable conflicts will occur by system/security update, many legacy systems are used.

What if a power plant and water purification plant is cyber-attacked and we can not use water and electricity for more than a week? All food in refrigerator will be rotten and shower, laundry, cooking etc. also will be limited. The lack of water will cause endless crime.

The article talked about network visualization for administrating against attack. we need a visualization solution that goes beyond esm/siem. Fundamentally, a portion of every budget must be used for security. Remember, all security starts from money.