US Defense contractors recruiting offensive attackers by the hundreds
1–10 of 13 posts
Re: US Defense contractors recruiting offensive attackers by the hundreds
#2So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets, are all about US attacking others, and basically committing acts of war against them (their words, not mine).
If the US is really afraid of "cyber-threats", then they really need to ramp up the defense at home, not offense, and keep as much of the critical infrastructure off the Internet as possible.
Oh, and these are a couple of funny posts about the politicians' abuse of the word "cyber":
http://www.techdirt.com/articles/20120614/01590919314/cyberp...
http://www.techdirt.com/articles/20120615/03214619333/politi...
Re: US Defense contractors recruiting offensive attackers by the hundreds
#3Re: US Defense contractors recruiting offensive attackers by the hundreds
#4This has confirmed all my worries. Whenever the intelligence agencies and the politicians lobby for "cyber-bills" and such, and it's almost never about "protecting US against threats", but about "attacking others". So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets…
Re: US Defense contractors recruiting offensive attackers by the hundreds
#5This has confirmed all my worries. Whenever the intelligence agencies and the politicians lobby for "cyber-bills" and such, and it's almost never about "protecting US against threats", but about "attacking others". So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets…
I'd like to see your sources. I think you might be confusing bills like SOPA and CISPA as actual cyber bills. Most of the actual cyber bills I've read are for things like the US being able to lock down the security of the power grid b/c NSA really is that much better at it than your average sysadmin.
Re: US Defense contractors recruiting offensive attackers by the hundreds
#6This has confirmed all my worries. Whenever the intelligence agencies and the politicians lobby for "cyber-bills" and such, and it's almost never about "protecting US against threats", but about "attacking others". So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets…
Are we really shocked, shocked that the DoD employs offensive technology people? We're talking about the military here.
Re: US Defense contractors recruiting offensive attackers by the hundreds
#7This has confirmed all my worries. Whenever the intelligence agencies and the politicians lobby for "cyber-bills" and such, and it's almost never about "protecting US against threats", but about "attacking others". So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets…
"it's almost never about "protecting US against threats", but about "attacking others"" I'd like to see your sources. I think you might be confusing bills like SOPA and CISPA as actual cyber bills. Most of the actual cyber bills I've read are for things like the US being able to lock down the security of the power grid b/c NSA really is that much better at it than your average sysadmin.
Re: US Defense contractors recruiting offensive attackers by the hundreds
#8This has confirmed all my worries. Whenever the intelligence agencies and the politicians lobby for "cyber-bills" and such, and it's almost never about "protecting US against threats", but about "attacking others". So on one hand they keep drumming up the fear mongering about other countries attacking us through "cyberspace" and that they need "these bills" to stop that, when in fact the bills, and the bigger budgets…
Are we really shocked, shocked that the DoD employs offensive technology people? We're talking about the military here.
(Stockpiling hacks and crypto nastiness is obviously a good idea, doing something about China's cyber-espionage makes sense, and increasingly sophisticated and well-funded hacking is probably unavoidable; but TTBOMK, the US has been the first to directly attack targets of major military significance, both in Iraq and in Iran.)
Re: US Defense contractors recruiting offensive attackers by the hundreds
#9It also makes for good record keeping by "interviewing" talent.
Re: US Defense contractors recruiting offensive attackers by the hundreds
#10Earlier quoted context omitted.
Are we really shocked, shocked that the DoD employs offensive technology people? We're talking about the military here.
Piggybacking off your comment: I am surprised, am I missing something? Given the US' and the West's rather serious vulnerability in this arena, escalating the use of cyber-"weapons" doesn't obviously seem the best idea. (Stockpiling hacks and crypto nastiness is obviously a good idea, doing something about China's cyber-espionage makes sense, and increasingly sophisticated and well-funded hacking is probably unavoida…
That would be a ridiculous point, unworthy of debate.
Nation states around the world owe their first allegiance to their own interests, and then to the interests of their long-term economic and geopolitical prospects, and then maybe to their people. Any allegiance owed to principled conduct in "cyberspace" is way, way down the list. Any rival of the United States has an advantage that can be prosecuted using offensive security research is assuredly already doing so.
I also take issue with your last sentence, with the idea that the US was the first state to directly engage foreign targets. Obviously, the words "of major military significance" gives your argument a lot of room to maneuver, but the overall effect of the argument as it stands is that the US is the only state pursuing any kind of meaningful offensive security effort. That's almost definitely not the case.
I'm also unclear as to why I should be particularly disturbed by the weaponization of IT. Let's stipulate for a moment that Stuxnet was a weapon intended to sabotage a covert Iranian nuclear weapons program. OK. And? What moral authority does Stuxnet lack that a laser-guided bomb dropped from a jet owns? Did Stuxnet kill anyone? To the extent the US military can accomplish objectives using technological countermeasures rather than explosive munitions, I call that progress.