Share

Related Links

  • Computer Weekly
  • Elsevier Ltd is not responsible for the content of external websites.

Related Stories

  • No charges in Lower Merion webcam scandal
    Earlier this week, Federal authorities announced they would not be prosecuting administrators of the Lower Merion School District over its highly publicized webcam spying incidents. The district’s legal troubles, however, are likely not over.
  • Four-year prison sentence for San Francisco network administrator
    Terry Childs, a former city of San Francisco network administrator, received a four-year sentence on Friday for his earlier conviction on computer tampering charges.
  • Interview: Charles Palmer
    No shortage of attention has been paid to the topic of cybersecurity as of late, especially with respect to the role of government. All talk aside, what is being done to address the threats, and how real are they? Drew Amorosi sits down with Charles Palmer, the director of IBM’s Institute for Advanced Security, and learned that although the US may have cybersecurity challenges, the first step toward recovery is admitting that we have a problem
  • Securing the Friendly Skies
    Aviation security and information security are inextricably linked. So much of what makes up aviation security depends on sound information security; encompassing the protection of intelligence, procedural, systems, and network data. For all-too-obvious reasons, much of what goes on behind the scenes at airports with respect to information security is a closely guarded secret, whether it is the alphabet soup of governmental agencies in play or the airlines themselves. Drew Amorosi reports

Top 5 Stories

News

Infected USB drive 'significantly compromised' Pentagon computers

27 August 2010

US defence officials have admitted for the first time that malware on a USB stick "significantly compromised" classified Pentagon computers in 2008.

Writing in Foreign Affairs journal, US deputy secretary of defence William Lynn said the recently declassified attack began when an infected flash drive was put into a US military laptop at a base in the Middle East.

This led to the most significant breach of US military computers ever, and served as an important wake-up call, Lynn said.

"The flash drive's malicious computer code, placed there by a foreign intelligence agency, uploaded itself onto a network run by the US Central Command. That code spread undetected on both classified and unclassified systems, establishing what amounted to a digital beachhead, from which data could be transferred to servers under foreign control", Lynn said.

He claimed more than 100 foreign intelligence organisations were trying to hack into the US military digital networks that support operations. The frequency and sophistication of attacks had "increased exponentially" over the past 10 years, he said.

"Every day, US military and civilian networks are probed thousands of times and scanned millions of times. And the 2008 intrusion was not the only successful penetration. Adversaries have acquired thousands of files from US networks and from the networks of US allies and industry partners, including weapons blueprints, operational plans, and surveillance data.

The Pentagon recognised the catastrophic threat posed by cyberwarfare, and was working with allied governments and private companies to prepare itself, Lynn said.

"An enormous amount of foundational work remains, but the US government has begun putting in place various initiatives to defend the United States in the digital age," he said.

This story was first published by Computer Weekly

This article is featured in:
Data Loss  • Encryption • Public Sector

 

Comment on this article

You must be registered and logged in to leave a comment about this article.