This won’t help me sleep any better. Ira Winkler and his team apparently cut through a power company’s security like a hot knife through butter:
We had to shut down within hours,” Winkler says, “because it was working too well. We more than proved that they were royally screwed.” In addition to consulting, Winkler is author of the books Spies Among Us and Zen and the Art of Information Security.
The problem is pervasive across the power industry, he says, because of how power company networks evolved. Initially their supervisory, control and data acquisition (SCADA) networks were built as closed systems, but over time intranets and Internet access have been added to the SCADA networks. Individual desktops have Internet access and access to business servers as well as the SCADA network, making the control systems subject to Internet threats. “These networks aren’t enclosed anymore. They’ve been open for more than a decade,” Winkler says.
Permimeter security kills. Fortunately in FL we have to prepare for extended power outages anyway.