Commentary

Michael Hickins
 

U.S. Grid Vulnerability Likened To Pre-9/11 Airline Security

The nation's infrastructure may be crumbling, but in one sense, it might be too advanced for its own good. Or rather, advanced without having the right precautions in place.

The nation's infrastructure may be crumbling, but in one sense, it might be too advanced for its own good. Or rather, advanced without having the right precautions in place.The Wall Street Journal reported that, according to one Department of Defense official, the Pentagon has spent 100 million over the past six months to repair damage to U.S. infrastructure caused by cyber-criminals.

No one can prove it, but all fingers point at the Russian and Chinese governments. Dennis Blair, the U.S. director of national intelligence, told Congress that critical U.S. infrastructure, such as the U.S. electrical grid, is vulnerable to cyber attacks, and an unnamed senior intelligence official told the Journal, "The Chinese have attempted to map our infrastructure, such as the electrical grid... So have the Russians."


More Insights

White Papers

More >>

Reports

More >>

Webcasts

More >>

This shouldn't really be a surprise. There's a huge push to put everything on line -- and I'm not saying there shouldn't be -- but no consideration has been given to security standards. There simply aren't any.

Meanwhile, utilities are trying to put an additional 40 million nodes online because it makes meter-reading easier. Fiber to the home puts us all online so we can program our TVs remotely. Those are all good things.

But it's as if we were still driving around in cars without seat belts, or allowing building contractors to sell homes without requiring them to obtain a certificate of occupancy to ensure the houses are safe. Most things that are produced have to meet certain standards before they can be sold to the public. But the Internet isn't subject to standards because it's still early days, and everyone is so busy trying to figure out how to get online and get smarter that they're not thinking about security.

As cyberterrorism expert Melih Abdulhayoglu just told me, "People are looking at enablement, not figuring out vulnerabilities that enablement brings. But there has to be a standard for putting things online, especially when it concerns our national security."

Abdulhayoglu noted that U.S. airlines were just as vulnerable on September 10, 2001 as they were on September 11, but they weren't aware of it. "We're living in pre-9/11 days in the Internet. We're vulnerable to attack but we just don't see it," he told me.

He added, "We have to start creating those standards."


Related Reading




Currently we allow the following HTML tags in comments:

Single tags

These tags can be used alone and don't need an ending tag.

<br> Defines a single line break

<hr> Defines a horizontal line

Matching tags

These require an ending tag - e.g. <i>italic text</i>

<a> Defines an anchor

<b> Defines bold text

<big> Defines big text

<blockquote> Defines a long quotation

<caption> Defines a table caption

<cite> Defines a citation

<code> Defines computer code text

<em> Defines emphasized text

<fieldset> Defines a border around elements in a form

<h1> This is heading 1

<h2> This is heading 2

<h3> This is heading 3

<h4> This is heading 4

<h5> This is heading 5

<h6> This is heading 6

<i> Defines italic text

<p> Defines a paragraph

<pre> Defines preformatted text

<q> Defines a short quotation

<samp> Defines sample computer code text

<small> Defines small text

<span> Defines a section in a document

<s> Defines strikethrough text

<strike> Defines strikethrough text

<strong> Defines strong text

<sub> Defines subscripted text

<sup> Defines superscripted text

<u> Defines underlined text

InformationWeek encourages readers to engage in spirited, healthy debate, including taking us to task. However, InformationWeek moderates all comments posted to our site, and reserves the right to modify or remove any content that it determines to be derogatory, offensive, inflammatory, vulgar, irrelevant/off-topic, racist or obvious marketing/SPAM. InformationWeek further reserves the right to disable the profile of any commenter participating in said activities.

Disqus Tips To upload an avatar photo, first complete your Disqus profile. | View the list of supported HTML tags you can use to style comments. | Please read our commenting policy.
T-Shirt Giveaway T-Shirt Giveaway: Each week we're selecting one great comment from our readers. The author of the comment will receive an InformaitonWeek Community t-shirt. So get posting!
Subscribe to RSS

Resource Links