On security - SCADA sofware defect (Siemens' WinCC)

Mel Wilson mwilson-4YeSL8/OYKRWk0Htik3J/w at public.gmane.org
Fri Sep 24 02:14:19 UTC 2010


On 10-09-23 11:32 AM, William Muriithi wrote:
> Morning pal
>
> Just came to learn about this virus - Stuxnet.  If you google more on
> it, look like work from a well financed organization which make it
> petty interesting.
>
> Now, what though is surprising is that changing the default password
> impact the operation of the whole system.  How the f**k is that
> acceptable in current times.  That would be like a good reason to
> automatically eliminate it from consideration during sourcing I would
> think.
>
> http://en.wikipedia.org/wiki/Stuxnet
>
> http://www.bbc.co.uk/news/technology-11388018
>
> Really, am I over reacting a bit by stating an enterprise product
> should at least allow password reset?

One theory is that it's targeting one specific system:

<http://motherjones.com/kevin-drum/2010/09/living-jack-bauers-world>

	Mel.
--
The Toronto Linux Users Group.      Meetings: http://gtalug.org/
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://gtalug.org/wiki/Mailing_lists





More information about the Legacy mailing list