Live data from Hacker News

Nuclear weapons agency breached amid massive cyber onslaught

politico.com

51–60 of 222 posts

Re: Nuclear weapons agency breached amid massive cyber onslaught

#51

This is the result of 4 years of neglect in the oval office. This is a disastrous breach - but not a surprise under our current leadership.

Considering the OPM hack under the predecessor provided information on every person with a security clearance, I don't think it is quite fair to blame one as this sadly seems to be par for the course. I'm sure the incoming octogenarian will understand the series of tubes better...

Re: Nuclear weapons agency breached amid massive cyber onslaught

#52

This is the result of 4 years of neglect in the oval office. This is a disastrous breach - but not a surprise under our current leadership.

https://www.theguardian.com/us-news/2020/nov/17/chris-krebs-...

Sycophancy and dishonesty spread pretty quickly - two things you don't want in anything important.

Re: Nuclear weapons agency breached amid massive cyber onslaught

#55
post #14

Nobody worry: There's a security company named SolarWinds that has a lot of experience when it comes to getting hacked, and they've already got contracts with the Federal government. Working together, I'm sure the Feds & SolarWinds can leverage those existing relationships to help get to the bottom of this situation and make sure it never happens again.

Has anyone tracked if these guys donated to the GOP and Trump?

They're a government contractor. In all probability they give to both parties, and have lobbyists in D.C. taking congressional aides on both sides of the aisle out for cocktails on a regular basis.

What it comes down to is that incompetence is very much bipartisan, if not outright apolitical.

Re: Nuclear weapons agency breached amid massive cyber onslaught

#56

I am pointing the finger at Microsoft for allowing bad security practice in windows kernel, architecture and other aspects of the Windows operating system. I am have to hand it to Microsoft for the good job security. However without knowing the extent of the incident, and going off of this part: "At this point, the investigation has found that the malware has been isolated to business networks only..." It is more tha…

Yeah, and if MS tries and change this and make the kernel more secure I would expect huge outrage on HN from people complaining about MS restricting their freedom.

Having the police put a lock on your front door that you don't have the key to will technically make your home "more secure", but not in any way that's useful.

Locking down devices is actually just giving up on security. Trusted code and centralized review don't scale. Real security implies effectively mediating between many different interacting parties, not simply reducing the number of them.

Re: Nuclear weapons agency breached amid massive cyber onslaught

#57

I am pointing the finger at Microsoft for allowing bad security practice in windows kernel, architecture and other aspects of the Windows operating system. I am have to hand it to Microsoft for the good job security. However without knowing the extent of the incident, and going off of this part: "At this point, the investigation has found that the malware has been isolated to business networks only..." It is more tha…

I'm not a fan of Windows in the slightest, but it should be noted that the Linux kernel has been moving in that direction for the better part of 2 decades now. The amount of privileged code running in the kernel now is absolutely mind boggling.

I'm really hoping to see an industrial-scale push to develop a solid headless unix-y userland for SeL4.

Re: Nuclear weapons agency breached amid massive cyber onslaught

#58
post #6

It feels like we're in the calm before the storm and nobody is watching the approaching squall. China growing in power and influence, flexing itself on the global stage. The US waning internationally, citizens divided and full of hate. We're factory-less, fab-less, and have fewer educated. Fewer consumers. Lots of debt. We have SpaceX, but China's pace of exploration and international cooperation is increasing faster…

Why should the US claim moral authority? It’s the least moral country on Earth - stolen, racist, solely designed to funnel wealth to white men. China deserves it more than us.

US has been on the right side of many things in history, not all of course,

For example, beating the nazis, USA did not invent slavery or the international slave trade, leading the world in charitable donations, etc.

Take a chill pill

Re: Nuclear weapons agency breached amid massive cyber onslaught

#59

This is the result of 4 years of neglect in the oval office. This is a disastrous breach - but not a surprise under our current leadership.

Considering the OPM hack under the predecessor provided information on every person with a security clearance, I don't think it is quite fair to blame one as this sadly seems to be par for the course. I'm sure the incoming octogenarian will understand the series of tubes better...

When you have the President firing people (Director of DHS Cybersecurity ring any bells?) for not playing his insane games, does the apple fall far from the tree?

If you think the president needs to actually "understand" anything subtle like (even physical) security, you are being deliberately obtuse or naive.

Re: Nuclear weapons agency breached amid massive cyber onslaught

#60

Hopefully the networks that have launch and scheduling are fully airgapped.

https://threatpost.com/air-gap-attack-turns-memory-wifi/1623...

That's for data exfiltration. Wouldn't be useful for sending launch and scheduling commands.
Post reply on HN