تمامی پرداخت های درگاه پی لاین مبلغ کارمزد به مبلغ کل اضافه میگردد

خدمات

لیست خدمات

وبمستر

خدمات وبمستر

فروشگاه

002.gif (468×60)

Researcher develops ransomware attack that targets water supply

فناوری اطلاعات فارس :

A security researcher is showing that it’s not hard to hold industrial control systems for ransom. He’s experimented with a simulated water treatment system based on actual programmable logic controllers (PLCs) and documented how these can be hacked.

David Formby, a PhD student at Georgia Institute of Technology, conducted his experiment to warn the industry about the danger of poorly-secured PLCs. These small dedicated computers can be used to control important factory processes or utilities, but are sometimes connected to the internet.

For instance, Formby found that 1,500 of these industrial PLCs are accessible online, he said while speaking at the RSA cybersecurity conference on Monday. It’s not hard to imagine a hacker trying to exploit these exposed PLCs, he added. Cybercriminals have been infecting businesses across the world with ransomware, a form of malware that can hold data hostage in exchange for bitcoin.

For a hacker, holding an industrial control system hostage can also be lucrative, and far more devastating for the victim.

“He (the hacker) can threaten to permanently damage this really sensitive equipment,” Formby said. “For example, a power grid transformer can take months to repair.”

Ideally, industrial PLCs should be “air-gapped” or segregated from the internet. But often times, they’re connected to other computers that are frequently online. Or they’re accessible from a third-party vendor, who’s been hired to maintain them over the internet, Formby said.

In addition, these PLCs are often old, and weren’t built with online security features in mind. For instance, there’s nothing to protect them from brute-force password attacks or to prevent the use of weak passwords, Formby said.  

To demonstrate the risks, Formby designed a simulated water treatment plant, built with actual industrial PLCs that will control the flow of water and chlorine into a storage tank (a YouTube video can be found here).

بهمن ۲۶ام, ۱۳۹۵ | 17 views | دسته: english
002.gif (468×60)

مهندس مرادی

مهندس مرادی

محمود رضا مرادی هستم - از سال 78 فعالیت خود را در حوزه رایانه آغاز کردم در حال حاضر یکی از نویسندگان پایگاه فناوری اطلاعات فارس می باشم




آخرین مطالب ارسالی