I was planning on blogging an entry on the need for accountability in security across Corporate America. As I was about to do so, I stumbled upon an interesting article on Yahoo titled “Cyber crime becoming more organized”.
One statement in particular is worthy of mention – “A growing worry is that cyber crooks could target emergency services for extortion purposes or that terrorists may be tempted to attack critical utility networks like water and electricity.”
I'd been meaning to blog this entry for a while now and the coincidental timing of the above mentioned article makes this blog entry highly meaningful today; the blog on accountability will just have to wait because the statement above unequivocally resonates our concern regarding the inadequacy of security infrastructure protection controls across the free world.
Today, the threat of cyber terrorism is very real, especially given our complete dependence on IT. The reality on the ground is that our IT security infrastructures are easy targets for terrorists and it is only a matter of time before terrorists realize how soft our underbelly really is; once they do, we will be in trouble, for they will waste no time in gaining and using the technical know-how required to attack and compromise our security infrastructures.
If you take into account that such avenues of attack can be pursued from virtually anywhere in the world, and be carried out without physically putting the perpetrators in harms way, imagine how appealing this option would be to them, in stark comparison to the expensive and dangerous option of attempting to acquire and use nuclear weapons.
Who needs WMDs today, to make the world a dangerous place?
All you need is two WDs in the same pl(ace). After all, we live in the Information age.
Puzzled? Here’s one simple question for you – what does the following string represent and why should it be a grave cause of concern?
(A;;RP;;;WD)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;ED)(OA;;CR;1131f6aa-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ab-9c07-11d1-f79f-00c04fc2dcd2;;BA)(OA;;CR;1131f6ac-9c07-11d1-f79f-00c04fc2dcd2;;BA)(A;;RPLCLORC;;;AU)(A;;RPWPCRLCLOCCRCWDWOSW;;;DA)(A;CI;RPWPCRLCLOCCRCWDWOSDSW;;;BA)(A;;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;SY)(A;CI;RPWPCRLCLOCCDCRCWDWOSDDTSW;;;EA)(A;CI;LC;;;RU)(OA;CIIO;RP;037088f8-0ae1-11d2-b422-00a0c968f939;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;59ba2f42-79a2-11d0-9020-00c04fc2d3cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RP;bc0ac240-79a9-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU) (A;CI;RPWDLCLO;;;WD)(OA;CIIO;RP;4c164200-20c0-11d0-a768-00aa006e0529;bf967aba-0de6-11d0-a285-00aa003049e2;RU) (OA;CIIO;RP;5f202010-79a5-11d0-9020-00c04fc2d4cf;bf967aba-0de6-11d0-a285-00aa003049e2;RU)(OA;CIIO;RPLCLORC;;bf967a9c-0de6-11d0-a285-00aa003049e2;RU)(A;;RC;;;RU)(OA;CIIO;RPLCLORC;;bf967aba-0de6-11d0-a285-00aa003049e2;RU)
It shouldn't take the astute mind more than a minute to figure it out, given that I’ve actually already provided the answer. It's all about perspective.
Speaking of perspective, which happens to be the topic of my next blog entry, as I take your leave, I’ll leave you with yet another simple question...
What do the following organizations have in common?
Microsoft, Hewlett Packard, Intel, Cisco, Dell, the US Army, the US Air Force, the US Navy, the White House, the Department of Justice, Bank of America, Citibank, Wells Fargo, Chevron Texaco, Goldman Sachs, Fidelity Investments, Blue Cross, Walmart, KPMG, the Carlyle Group of companies, Los Alamos National Labs, Wipro, Charles Schwab, Boeing, Lockheed Martin and virtually every other organization that is an American household name?
[Hint: The two questions above are closely related. The connect lies between the lines.]
I’ll shed light on the answers on Monday, October 09, 2006.
Have a wonderful weekend,
Best wishes,
Sanjay