IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Not a chance
Routers get shipped en mass pre-configured with standard corporate (known by many, easily cracked) passwords. Rarely are they changed.

SCADA isn't designed for ANY network attachment. Any security on it is an afterthought, and rarely works. The vast majority of our electrical infrastructure, chemical plants, manufacturing plants, etc, are run from off the shelf SCADA components which are not intended to be connected to the back-office network.

And they always connect it so the engineers can work remotely and the back-office people can get ongoing automated reports. Which in turn allows malware to attack them, and the malware is SIMPLE.

You work in the office. You hear all the good things that the managers are reporting. I work in the tranches. I see what they are not.

Your daily lookers are too busy fighting fires, and they don't have access to the proprietary underlying SCADA code to fix it anyway. They try to sandbox it via routers and firewalls, but it is piecemeal, and doesn't work.
New Actually
In general, I would agree..what I'm referencing is not in general. No more can be said here.

Not talking to the managers. Talking to the engineers.
Sure, understanding today's complex world of the future is a little like having bees live in your head. But...there they are.
New Hey, maybe you've seen a decent implementation
But you know the vast open sea of SCADA installed base, just waiting to be hacked, isn't going away.
New Yes I have, and yes I know..
...and hopefully they will go away...need to keep busy;-)

Sure, understanding today's complex world of the future is a little like having bees live in your head. But...there they are.
     Offshore ==> Offshore trap doors et alia? - (Ashton) - (9)
         My take - (drook) - (1)
             But of course.. -NT - (Ashton)
         backdoors built into the hardware - (boxley) - (6)
             unlikely - (beepster) - (5)
                 scada is p0wned -NT - (boxley)
                 Not a chance - (crazy) - (3)
                     Actually - (beepster) - (2)
                         Hey, maybe you've seen a decent implementation - (crazy) - (1)
                             Yes I have, and yes I know.. - (beepster)

Has anyone seen the bridge?
88 ms