Showing posts with label Cyber Warfare. Show all posts
Showing posts with label Cyber Warfare. Show all posts

20170731

Hackers Are Targeting Nuclear Facilities, Homeland Security Dept. and F.B.I. Say



Since May, hackers have been penetrating the computer networks of companies that operate nuclear power stations and other energy facilities, as well as manufacturing plants in the United States and other countries.

Among the companies targeted was the Wolf Creek Nuclear Operating Corporation, which runs a nuclear power plant near Burlington, Kan., according to security consultants and an urgent joint report issued by the Department of Homeland Security and the Federal Bureau of Investigation last week.

The joint report was obtained by The New York Times and confirmed by security specialists who have been responding to the attacks. It carried an urgent amber warning, the second-highest rating for the sensitivity of the threat.

The report did not indicate whether the cyberattacks were an attempt at espionage — such as stealing industrial secrets — or part of a plan to cause destruction. There is no indication that hackers were able to jump from their victims’ computers into the control systems of the facilities, nor is it clear how many facilities were breached.

Wolf Creek officials said that while they could not comment on cyberattacks or security issues, no “operations systems” had been affected and that their corporate network and the internet were separate from the network that runs the plant.
Continue reading the main story

In a joint statement with the F.B.I., a spokesman for the Department of Homeland Security said, “There is no indication of a threat to public safety, as any potential impact appears to be limited to administrative and business networks.”

The hackers appeared determined to map out computer networks for future attacks, the report concluded. But investigators have not been able to analyze the malicious “payload” of the hackers’ code, which would offer more detail into what they were after.

John Keeley, a spokesman for the Nuclear Energy Institute, which works with all 99 electric utilities that operate nuclear plants in the United States, said nuclear facilities are required to report cyberattacks that relate to their “safety, security and operations.” None have reported that the security of their operations was affected by the latest attacks, Mr. Keeley said.

In most cases, the attacks targeted people — industrial control engineers who have direct access to systems that, if damaged, could lead to an explosion, fire or a spill of dangerous material, according to two people familiar with the attacks who could not be named because of confidentiality agreements.

The origins of the hackers are not known. But the report indicated that an “advanced persistent threat” actor was responsible, which is the language security specialists often use to describe hackers backed by governments.

The two people familiar with the investigation say that, while it is still in its early stages, the hackers’ techniques mimicked those of the organization known to cybersecurity specialists as “Energetic Bear,” the Russian hacking group that researchers have tied to attacks on the energy sector since at least 2012.

Hackers wrote highly targeted email messages containing fake résumés for control engineering jobs and sent them to the senior industrial control engineers who maintain broad access to critical industrial control systems, the government report said.

The fake résumés were Microsoft Word documents that were laced with malicious code. Once the recipients clicked on those documents, attackers could steal their credentials and proceed to other machines on a network.

In some cases, the hackers also compromised legitimate websites that they knew their victims frequented — something security specialists call a watering hole attack. And in others, they deployed what are known as man-in-the-middle attacks in which they redirected their victims’ internet traffic through their own machines.

Energy, nuclear and critical manufacturing organizations have frequently been targets for sophisticated cyberattacks. The Department of Homeland Security has called cyberattacks on critical infrastructure “one of the most serious national security challenges we must confront.”

On May 11, during the attacks, President Trump signed an executive order to strengthen the cybersecurity defenses of federal networks and critical infrastructure. The order required government agencies to work with public companies to mitigate risks and help defend critical infrastructure organizations “at greatest risk of attacks that could reasonably result in catastrophic regional or national effects on public health or safety, economic security, or national security.”

The order specifically addressed the threats from “electricity disruptions and prolonged power outages resulting from cybersecurity incidents.”

Jon Wellinghoff, the former chairman of the Federal Energy Regulatory Commission, said in an interview last week that while the security of United States’ critical infrastructure systems had improved in recent years, they were still vulnerable to advanced hacking attacks, particularly those that use tools stolen from the National Security Agency.

“We never anticipated that our critical infrastructure control systems would be facing advanced levels of malware,” Mr. Wellinghoff said.

In 2008, an attack called Stuxnet that was designed by the United States and Israel to hit Iran’s main nuclear enrichment facility, demonstrated how computer attacks could disrupt and destroy physical infrastructure.

The government hackers infiltrated the systems that controlled Iran’s nuclear centrifuges and spun them wildly out of control, or stopped them from spinning entirely, destroying a fifth of Iran’s centrifuges.

In retrospect, Mr. Wellinghoff said that attack should have foreshadowed the threats the United States would face on its own infrastructure.

Critical infrastructure is increasingly controlled by Scada, or supervisory control and data acquisition systems. They are used by manufacturers, nuclear plant operators and pipeline operators to monitor variables like pressure and flow rates through pipelines. The software also allows operators to monitor and diagnose unexpected problems.

But like any software, Scada systems are susceptible to hacking and computer viruses. And for years, security specialists have warned that hackers could use remote access to these systems to cause physical destruction.


AS SEEN @

https://www.nytimes.com/2017/07/06/technology/nuclear-plant-hack-report.html?_r=0

20170125

Cyber security 'the new frontier of warfare, espionage', Malcolm Turnbull says



DATE: 24/01/2017
SOURCE: ABC.AU


Prime Minister Malcolm Turnbull has declared cyber security "the new frontier of warfare" and espionage, while announcing new measures to protect Australian democracy from foreign interference.

Intelligence officials will host unprecedented security briefings with party officials in Canberra next month, amid concerns they may be vulnerable to foreign cyber attacks.

Mr Turnbull said the Government had been shocked by a United States intelligence report claiming Russia ordered a hidden campaign to influence the US presidential election.

~*~*~*~

Other nations learning from Russian activities: expert

Timothy Wellsmore, director of threat intelligence at global cyber security firm FireEye, said the threats to Australia went beyond China and Russia.

"We've seen some activities in this region from places that you wouldn't expect — like Indonesia [and] even Vietnam," said Mr Wellsmore, who formerly worked as a manager at the Australian Cyber Security Centre.

"There are a lot of other nations that will learn from Russian activities and will turn their offensive capabilities towards [targeting political interests] — if they haven't already."

Assistant Minister for Cyber Security Dan Tehan said every Australian political party must be vigilant and raised some concern about the upcoming Western Australia and Queensland elections.

READ THE WHOLE ARTICLE @

http://www.abc.net.au/news/2017-01-24/turnbull-declares-cyber-security-the-new-frontier-of-warfare/8207494

20170123

China tightens Great Firewall by declaring unauthorised VPN services illegal


Move means all cable and VPN services need prior government approval and comes as Beijing steps up censorship before power-reshuffle party congress

DATE: 23/01/2017
SOURCE: SCMP


Beijing has launched a 14-month nationwide campaign to crack down on unauthorised internet connections, including virtual private networks (VPN) services – a technology that allows users to bypass the country’s infamous Great Firewall.

A notice released by China’s Ministry of Industry and Information Technology on Sunday said that all special cable and VPN services on the mainland needed to obtain prior government approval – a move making most VPN service providers in the country of 730 million internet users illegal.



READ THE WHOLE ARTICLE @

http://www.scmp.com/news/china/policies-politics/article/2064587/chinas-move-clean-vpns-and-strengthen-great-firewall

20170121

Trump makes cyberwarfare an official priority for new White House


DATE: 20/01/2017
RETRIEVED: 21/01/2017
SOURCE: CBCNEWS



Digital weapons would be used to "disrupt and disable propaganda and recruiting" and protect secrets



.....under the section titled America First Foreign Policy, the government calls defeating ISIS and other terroist groups "our highest priority," and says that the U.S. will "engage in cyberwarfare to disrupt and disable propaganda and recruiting" in collaboration with international partners.

Under another section, Making Our Military Strong Again, cyberwarfare is mentioned too.

"Cyberwarfare is an emerging battlefield, and we must take every measure to safeguard our national security secrets and systems," the page reads, adding that the government "will make it a priority to develop defensive and offensive cyber capabilities at our U.S. Cyber Command, and recruit the best and brightest Americans to serve in this crucial area."

President Trump had previously said in October that cybersecurity would be "an immediate and top priority" if elected.

READ THE WHOLE ARTICLE @

http://www.cbc.ca/news/technology/cyberwarfare-donald-trump-us-president-foreign-policy-isis-1.3944993

CONCLUSION: O KAIPOC ΓΑΡ ΕΓΓΥC (WTF)

20170119

Storyville -Zero Day: Nuclear Cyber Sabotage BBC Documentary 2017

RETRIEVED: 19/01/2017
SOURCE: YOUTUBE, BBC

Documentary thriller about warfare in a world without rules - the world of cyberwar. It tells the story of Stuxnet, self-replicating computer malware, known as a 'worm' for its ability to burrow from computer to computer on its own. In a covert operation, the American and Israeli intelligence agencies allegedly unleashed Stuxnet to destroy a key part of an Iranian nuclear facility. Ultimately the 'worm' spread beyond its intended target.
Zero Day is the most comprehensive account to date of how a clandestine mission opened forever the Pandora's box of cyber warfare. A cautionary tale of technology, politics, unintended consequences, morality, and the dangers of secrecy.





ABOUT STUXNET FROM WIKIPEDIA

Stuxnet is a malicious computer worm, first identified in 2010, that targets industrial computer systems and was responsible for causing substantial damage to Iran's nuclear program. The software was designed to erase itself in 2012 thus limiting the scope of its effects. The worm is believed by many experts to be a jointly built American-Israeli cyberweapon,[1] although no organization or state has officially admitted responsibility. Anonymous US officials speaking to The Washington Post claimed the worm was developed during the Bush administration to sabotage Iran's nuclear program with what would seem like a long series of unfortunate accidents.[2]

Stuxnet specifically targets programmable logic controllers (PLCs), which allow the automation of electromechanical processes such as those used to control machinery on factory assembly lines, amusement rides, or centrifuges for separating nuclear material. Exploiting four zero-day flaws,[3] Stuxnet functions by targeting machines using the Microsoft Windows operating system and networks, then seeking out Siemens Step7 software. Stuxnet reportedly compromised Iranian PLCs, collecting information on industrial systems and causing the fast-spinning centrifuges to tear themselves apart.[4] Stuxnet’s design and architecture are not domain-specific and it could be tailored as a platform for attacking modern SCADA and PLC systems (e.g., in automobile assembly lines[vague] or power plants), the majority of which reside in Europe, Japan and the US.[5] Stuxnet reportedly ruined almost one fifth of Iran's nuclear centrifuges.

READ THE WHOLE ARTICLE @

https://en.wikipedia.org/wiki/Stuxnet

20170115

WhatsApp vulnerability allows snooping on encrypted messages



Exclusive: Privacy campaigners criticise WhatsApp vulnerability as a ‘huge threat to freedom of speech’ and warn it could be exploited by government agencies

DATE: 13/01/2017
RETRIEVED: 15/01/2017
SOURCE THE GUARDIAN


A security vulnerability that can be used to allow Facebook and others to intercept and read encrypted messages has been found within its WhatsApp messaging service.

~*~*~*~

WhatsApp’s end-to-end encryption relies on the generation of unique security keys, using the acclaimed Signal protocol, developed by Open Whisper Systems, that are traded and verified between users to guarantee communications are secure and cannot be intercepted by a middleman.

However, WhatsApp has the ability to force the generation of new encryption keys for offline users, unbeknown to the sender and recipient of the messages, and to make the sender re-encrypt messages with new keys and send them again for any messages that have not been marked as delivered.

The recipient is not made aware of this change in encryption, while the sender is only notified if they have opted-in to encryption warnings in settings, and only after the messages have been re-sent. This re-encryption and rebroadcasting effectively allows WhatsApp to intercept and read users’ messages.

READ THE WHOLE ARTICLE @

https://www.theguardian.com/technology/2017/jan/13/whatsapp-backdoor-allows-snooping-on-encrypted-messages/


CONCLUSION: REMOVE WHATSAPP & INSTALL SIGNAL

20170113

The Swedish Kings of Cyberwar



DATE: 13/01/2017
SOURCE: NEW YORK REVIEW OF BOOKS

In 2011, the Swedes began sharing their surveillance data with the NSA, which included—as NSA officials described it at the time of the meeting—a “unique collection [of communications data] on high-priority Russian targets such as leadership, internal politics, and energy.”

Noting the Swedish spy agency’s unusual technical abilities and reputation for secrecy, NSA officials also viewed it as an ideal collaborator on its hacking and cyberwarfare project, called Quantum. One of the Quantum programs was an ambitious operation called WINTERLIGHT, which aimed at secretly hacking into high-value foreign computers and computer networks to obtain not only communications data but also any information stored on the hard drives or servers in question. Possible targets might be the administrators of foreign computer networks, government ministries, oil, defense, and other major corporations, as well as suspected terrorist groups or other designated individuals. Similar Quantum operations have targeted OPEC headquarters in Vienna, as well as Belgacom, a Belgian telecom company whose clients include the European Commission and the European Parliament.

According to NSA documents, WINTERLIGHT was using a complex attack strategy to secretly implant a malware program on the targeted computer or network. The NSA’s malware would then divert any signals between those computers and the Internet through “rogue” high-speed surveillance servers, called “FoxAcid” servers, allowing the NSA to access in stealth almost any of the user’s personal data—and even to tamper with data traveling from one user to another. The implications for both spying and offensive cyber operations were far-reaching. Wired has described how the attack on the Belgian telecom was able to

    [map] out the digital footprints of chosen workers, identifying the IP [internet protocol] addresses of work and personal computers as well as Skype, Gmail and social networking accounts such as Facebook and LinkedIn. Then they set up rogue pages, hosted on FoxAcid servers, to impersonate, for example, an employee’s legitimate LinkedIn profile page.


READ THE WHOLE ARTICLE @

http://www.nybooks.com/articles/2017/01/19/the-swedish-kings-of-cyberwar/

20170104

China wages cyber war via dharamsala



DATE: 25/12/2016
RETRIEVED: 04/01/2016


With a view to malign the Central Tibetan Administration (CTA), China is remotely accessing the computer servers in Dharamsala, planting spywares and malwares and disguising the IP address to target computer systems across the globe, said Prime Minister of Central Tibetan Administration Dr Lobsang Sangay.


“China is also seeking to drive a wedge between CTA and foreign governments by infecting our computer systems. Efforts are on to secure the servers in Dharamsala which is used by the Chinese as a transit point to launch cyber attacks globally,” Sangay told The Sunday Standard.

He said a major study on malware attacks against Tibetans conducted by Munk School of Global Affairs at the Toronto University reported that the attacks on the servers and computer system of CTA are “highly targeted and have low anti-virus detection”.  




Intelligence officials say the need of the hour is to develop an indigenous operating systems (OS) for mobile phones and computers as the MS Window-based systems or even the Safari OS used in iPhones and Mac computers could be susceptible to attacks.

READ THE WHOLE ARTICLE @

http://www.newindianexpress.com/thesundaystandard/2016/dec/24/china-wages-cyber-war-via-dharamsala-1552795.html

Tech’s Next Battle: The Frightful Five vs. Lawmakers



DATE: 04/01/2017
RETRIEVED: 04/01/2017
SOURCE: NYTIMES


In the technology industry, the sharks have never long been safe from the minnows. Over much of the last 40 years, the biggest players in tech — from IBM to Hewlett-Packard to Cisco to Yahoo — were eventually outmaneuvered by start-ups that came out of nowhere.

The dynamic is so dependable that it is often taken to be a kind of axiom. To grow large in this business is also to grow slow, blind and dumb, to become closed off from the very sources of innovation that turned you into a shark in the first place.

Then, in the last half decade, something strange happened: The sharks began to get bigger and smarter. Nearly a year ago, I argued that we were witnessing a new era in the tech business, one that is typified less by the storied start-up in a garage than by a posse I like to call the Frightful Five: Amazon, Apple, Facebook, Microsoft and Alphabet, Google’s parent company.

Together the Five compose a new superclass of American corporate might. For much of last year, their further rise and domination over the rest of the global economy looked not just plausible, but also maybe even probable.
Continue reading the main story

In 2017, much the same story remains, but there is a new wrinkle: The world’s governments are newly motivated to take on the tech giants. In the United States, Europe, Asia and South America, the Five find themselves increasingly arrayed against legal and regulatory powers, and often even against popular will.

READ THE WHOLE ARTICLE @

http://www.nytimes.com/2017/01/04/technology/techs-next-battle-the-frightful-five-vs-lawmakers.html

20170101

IDF (Israeli Defense Forces) to invest billions in cyber operations



DATE: 01/01/2017
SOURCE: YNET
VIA: GOOGLE


Cyber units throughout IDF will be strengthened, according to a senior officer; the Computer Service Directorate will incorporate some other IDF entities, but a unitary command for cyber affairs will not be established.

~*~*~*~

A senior IDF officer said on Sunday that, "for the first time in the multi-year Gideon project," which began last year, "the IDF will invest billions of shekels in cyber matters. We are currently writing the operating concept of the cyber affairs, establishing an entity of the General Staff to give the cyber perspective for all operational activity and the significance of cyber matters for the regional commands and for the air, land and sea forces. We are conducting war games and simulations and are learning from foreign countries on the subject. Our cooperation with other armies has principally raised two issues: terrorism and cyber affairs.

READ THE WHOLE ARTICLE @

http://www.ynetnews.com/articles/0,7340,L-4901547,00.html

Trump Promises a Revelation on Hacking



DATE: 31/12/2016
SOURCE: NY TIMES



Speaking to a handful of reporters outside his Palm Beach, Fla., club, Mar-a-Lago, Mr. Trump cast his declarations of doubt as an effort to seek the truth.

“I just want them to be sure because it’s a pretty serious charge,” Mr. Trump said of the intelligence agencies. “If you look at the weapons of mass destruction, that was a disaster, and they were wrong,” he added, referring to intelligence cited by the George W. Bush administration to support its march to war in 2003. “So I want them to be sure,” the president-elect said. “I think it’s unfair if they don’t know.”

~*~*~*~

Mr. Trump, who does not use email, also advised people to avoid computers when dealing with delicate material. “It’s very important, if you have something really important, write it out and have it delivered by courier, the old-fashioned way, because I’ll tell you what, no computer is safe,” Mr. Trump said.

“I don’t care what they say, no computer is safe,” he added. “I have a boy who’s 10 years old; he can do anything with a computer. You want something to really go without detection, write it out and have it sent by courier.”

READ THE WHOLE ARTICLE @

http://www.nytimes.com/2016/12/31/us/politics/donald-trump-russia-hacking.html

20161226

Highly Digitalized Norway Finds Itself Exposed to Cyber Warfare

DATE: 22/12/2016
SOURCE: SPUTNIK NEWS
VIA: NEWSNOW

Cyber-attacks are on the increase worldwide. Norway, as one of the world's most digitized countries, is therefore particularly vulnerable, something largely overlooked by both Norwegian politicians and business leaders, Norwegian researchers maintain.

Akin to how the advent of aviation changed the world in the early 1900s, ever-changing information technology is changing the world today. With cyber threats rising across the globe, Norway is among the likely targets being one of the world's most digitalized nations, researchers Niels Nagelhus Schia and Lilly Pijenburg Muller of the Norwegian Institute of International Affairs (NUPI) wrote in an opinion piece for Norwegian national broadcaster NRK.

Remarkably, cyber-attacks are not only directed against states, but against also private companies as well. In 2014, a German steelworks sustained extensive damage when hackers took control of software related to production operations.

Cyber warfare is therefore widely acknowledged as "the perfect weapon," which is cheap, difficult to predict, trace and detect. Increased aggression through cyberspace is an emerging geopolitical risk recognized by NATO, of which Norway is part. Earlier this year, NATO defined cyberspace as an independent defense domain, in the same way as land, sea and air. Earlier this year, French Defense Minister Jean Yves Le Drian compared the importance of cyber-attacks with the role of aircraft in First and Second World War, when he launched a new department for prevention of cyber warfare.

READ THE WHOLE ARTICLE @

https://sputniknews.com/military/201612221048867633-norway-cyber-attacks-warfare/

Lithuania said found Russian spyware on its government computers



DATE: 22/12/2016
SOURCE: REUTERS


The Baltic state of Lithuania, on the frontline of growing tensions between the West and Russia, says the Kremlin is responsible for cyber attacks that have hit government computers over the last two years.

The head of cyber security told Reuters three cases of Russian spyware on its government computers had been discovered since 2015, and there had been 20 attempts to infect them this year.

"The spyware we found was operating for at least half a year before it was detected – similar to how it was in the USA," Rimtautas Cerniauskas, head of the Lithuanian Cyber Security Centre said.

Fears of Russian cyber attacks have come to the fore since the U.S. election campaign when hacking of Democratic Party emails led to allegations from U.S. intelligence that Moscow was involved.

Lithuanian officials targeted by the Russian spyware held mid-to-low ranking positions at the government, but their computers contained a stream of drafts for government decisions of its positions on various matters, said Cerniauskas.

READ THE WHOLE ARTICLE @

http://www.reuters.com/article/us-lithuania-cyber-idUSKBN14B1PC

20161224

North Korea 'hacks South's military cyber command'



DATE: 06/12/2016
SOURCE: BBC

South Korea's military cyber command, set up to guard against hacking, appears to have been breached by North Korea, the military has said.

A spokesman told the BBC that classified information was thought to have been stolen, although it is not clear exactly what data was accessed.

The North has previously been accused of hacking into banks and media outlets but never the South's military.

Pyongyang has in the past rejected allegations of cyber crime involvement.

"It seems the intranet server of the cyber command has been contaminated with malware. We found that some military documents, including confidential information, have been hacked," a military spokesman told South Korea's Yonhap news agency.

It is not clear whether low-grade documents or more important details like war plans were accessed.

The military said that the compromised section of its network was isolated once the attack was detected.


READ THE REST OF THIS ARTICLE @ http://www.bbc.com/news/world-asia-38219009

Group that hacked the DNC also infiltrated Ukrainian artillery units


The group distributed a trojanized version of an Android app used by Ukrainian artillery personnel

DATE: 22/12/2016
AUTHOR: LUCIAN CONSTANTIN
SOURCE: COMPUTERWORLD


The cyberespionage group blamed for hacking into the Democratic National Committee (DNC) earlier this year also infiltrated the Ukrainian military through a trojanized Android application used by its artillery units.

The group, which is known in the security industry under different names, including Fancy Bear, Pawn Storm and APT28, has been operating for almost a decade. It is believed to be the sole user and likely developer of a Trojan program called Sofacy or X-Agent that has variants for Windows, Android and iOS.

Fancy Bear has been responsible for many cyberespionage operations around the world over the years, and its selection of targets has frequently reflected Russia's geopolitical interests. Researchers from security firm CrowdStrike believe the group is likely tied to the Russian Military Intelligence Service (GRU).

READ THE REST OF THIS ARTICLE @ http://www.computerworld.com/article/3153169/security/group-that-hacked-the-dnc-also-infiltrated-ukrainian-artillery-units.html

Obama Could Create A Stand-Alone Cybersecurity Agency



DATE: 24/12/2016
AUTHOR: GRANT SUNESON
SOURCE: KSHB

The NSA is best known for gathering intelligence domestically and internationally. Cybercom is tasked with attacking enemy networks and defending America's cyber infrastructure.

But now it seems that cybersecurity needs its own dedicated agency. Hacking has become a major issue in the U.S. This year we heard about major breaches at businesses like Yahoo and political organizations like the Democratic National Committee.

READ THE WHOLE ARTICLE @ http://www.kshb.com/newsy/obama-could-create-a-standalone-cybersecurity-agency

700 million Android phones have spying firmware preinstalled


DATE: 20/12/2016
AUTHOR: MIKE WEHNER
SOURCE: BGR

Trustlook, another digital security firm, dug deeper on what devices utilize Adups and could be used by the Chinese company to scrape your private information, and the list is absolutely massive. Trustlook says that over 700 million Android smartphones have Adups firmware installed that puts the user at risk of having text messages, call histories, and device information collected without their knowledge or consent.

Many of the manufacturers who utilize Adups are smaller companies who only release their devices in Asia or specific smaller markets. However, there are a few notable names on the list, including Lenovo, ZTE, and the aforementioned Blu.

READ THE WHOLE ARTICLE @ https://bgr.com/2016/12/20/adups-spyware-android-phones-security/

20161222

PUTIN: RUSSIA'S MILITARY IS STRONGER THAN ANY POTENTIAL FOE


DATE: 22/12/2016
AUTHOR: NATALIYA VASILYEVA
SOURCE: ASSOCIATED PRESS


MOSCOW (AP) -- Russia's military today can overpower any potential foe but should strengthen its nuclear arsenal, President Vladimir Putin told an annual end-of-year meeting Thursday with defense chiefs.

"We can say with certainty: We are stronger now than any potential aggressor," he told the meeting. "Anyone!"

His comments come at the end of a year when tensions between Russia and the West have remained on edge over the civil war in Syria.

Tensions between Russia and the West have been souring ever since Russia's 2014 annexation of Crimea and surreptitious support of separatists in eastern Ukraine. Relations dipped further after Russia last year launched an air offensive in Syria to support President Bashar Assad.

Both Russia and NATO members have conducted a flurry of military drills near Russia's borders this year. Russia insists it is responding to a growing NATO threat.

Speaking at the defense ministry's headquarters in Moscow, Putin said Russia should be swift in "adjusting plans to neutralize potential threats to our country."

He said strengthening Russia's nuclear capability should be a chief objective for 2017.

READ THE REST OF THIS ARTICLE @ http://hosted.ap.org/dynamic/stories/E/EU_RUSSIA_MILITARY?SITE=AP&SECTION=HOME&TEMPLATE=DEFAULT&CTIME=2016-12-22-06-35-19

Russian hacks into Ukraine power grids a sign of things to come for U.S.?



DATE: 21/12/2016
AUTHOR: HOLLY WILLIAMS
SOURCE: CBS NEWS



Russian hacking to influence the election has dominated the news. But CBS News has also noticed a hacking attack that could be a future means to the U.S. Last weekend, parts of the Ukrainian capitol Kiev went dark. It appears Russia has figured out how to crash a power grid with a click.

Last December, a similar attack occurred when nearly a quarter of a million people lost power in the Ivano-Frankivsk region of Ukraine when it was targeted by a suspected Russian attack. 

Vasyl Pemchuk is the electric control center manager, and said that when hackers took over their computers, all his workers could do was film it with their cell phones.

READ THE REST OF THIS ARTICLE @ http://www.cbsnews.com/news/russian-hacks-into-ukraine-power-grids-may-be-a-sign-of-things-to-come/

20161220

Mutually assured cyber destruction?



DATE: 15/12/2016
AUTHOR: DAVID HOROVITZ
SOURCE: THE TIMES OF ISRAEL


Op-ed: Experts say first the US, then some of the West’s enemies, have developed the capability to shut down entire countries at the flip of a switch


In summer 2013, I attended a conference on cybersecurity at Tel Aviv University. It was there that I learned for the first time that Stuxnet — the super-sophisticated computer virus that the US and Israel allegedly managed to insert into Iran’s Natanz enrichment facility in 2010, there to play havoc with the centrifuges — had come to be regarded in the world of cyber-warfare as a terrible mistake.

Several speakers at the conference made this assertion, branding as a failure what had been widely regarded in Israel as a dazzling success — a nonmilitary strike that had set the Iranian program back by a good few months, and had planted all kinds of uncertainty in the minds of their nuclear technicians.

On the sidelines of that conference, therefore, when I interviewed Richard A Clarke, the counterterrorism chief for both Bill Clinton and George W. Bush, I asked him whether he too thought Stuxnet had been, to put it mildly, counterproductive. Absolutely, Clarke made clear.

For one thing, “the attack code was supposed to die and not get out onto the internet,” he noted, but it did. “It got out, and ran around the world.” It couldn’t harm anything else, because it had been programmed only to strike at Iran’s centrifuges, but “nonetheless it tried to attack things and people therefore grabbed it and decompiled it, so it’s taught a lot of people how to attack,” said Clarke.

In other words, the alleged US-Israel cyber-warfare breakthrough became common knowledge in that dark world, enabling others — including, it would transpire, the Iranians themselves — to learn how to conduct similar attacks.

Worse still, Clarke indicated, the fact that the attack had been discovered constituted a kind of legitimation of that form of warfare — if the US was doing it, it could hardly complain if its enemies did the same. And this in an era when defenses against cyber warfare were playing constant catch-up to try to foil attackers.

As Clarke put it, “No one really knows how to do defensive systems. The technology right now doesn’t work as well on the defense as it does on the offense. Historically, there’s this phenomenon in military science called ‘offense preference,’ where certain circumstances are created where the offense always wins… Right now and for some time now, we have been in this period of offense preference in cyber, where the offense usually wins.”

READ THE REST PF THIS ARTICLE @ http://www.timesofisrael.com/mutually-assured-cyber-destruction/