1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

UK under cyber-attack

Discussion in 'Serious' started by cjmUK, 5 Feb 2011.

  1. cjmUK

    cjmUK Old git.

    Joined:
    9 Feb 2004
    Posts:
    2,553
    Likes Received:
    88
    http://www.bbc.co.uk/news/uk-12371056

    Interesting article, until...

    :duh: How is providing a dodgy link in a spoofed White House email a 'sophisticated attack'?

    I'm sure that there will be plenty of clever attacks on this (and most other) countries, on a daily basis, but what is the point when people keep making the same old basic mistakes.
     
  2. GoodBytes

    GoodBytes How many wifi's does it have?

    Joined:
    20 Jan 2007
    Posts:
    12,300
    Likes Received:
    710
    Never open document.exe. Long live hiding file extensions. :grr:

    And get Microsoft ForeFront (Security Essential but business edition)
     
  3. megadriveguy

    megadriveguy Minimodder

    Joined:
    19 May 2010
    Posts:
    814
    Likes Received:
    32
    Its funny how much attention this got in the news
     
  4. M7ck

    M7ck Ⓜod Ⓜaster

    Joined:
    28 Mar 2009
    Posts:
    3,600
    Likes Received:
    167
    The UK government should be spending there time on educating the staff on basic internet safety. It is ridiculous that these idiots still click links in unknown emails.
     
  5. Nexxo

    Nexxo * Prefab Sprout – The King of Rock 'n' Roll

    Joined:
    23 Oct 2001
    Posts:
    34,731
    Likes Received:
    2,210
    So some office drones clicked on a dodgy link in a spoof email. Where do they find these people. More significantly, their PCs had no anti-virus. Where do they find their IT people?!?

    And all of a sudden it's OMG THE UK IS UNDER CYBER-ATTACK!!!!!!111!!1111ONEONEONE

    Where do we find those politicians... :sigh:
     
  6. brave758

    brave758 Minimodder

    Joined:
    16 Apr 2009
    Posts:
    1,142
    Likes Received:
    29
    Hahaha too true
     
  7. D3s3rt_F0x

    D3s3rt_F0x What's a Dremel?

    Joined:
    28 Oct 2004
    Posts:
    719
    Likes Received:
    6
    Wow I'm fearing the arrival of this deadly spam.

    Oh wait I already get it in my junk mail......
     
  8. PhoenixTank

    PhoenixTank From The Ashes

    Joined:
    5 May 2010
    Posts:
    465
    Likes Received:
    28
    I don't know whether to be more worried that Hague is calling that a "Cyber-Attack", or that it actually worked.
     
  9. sb1991

    sb1991 What's a Dremel?

    Joined:
    31 May 2010
    Posts:
    425
    Likes Received:
    31
    The UK almost certainly is subject to genuine cyber-attacks every day (from China and others), but I'd be very surprised if they went out and published the details of these attacks. I doubt the folks over at GCHQ are entirely innocent in this department either...
     
  10. Houndofhell

    Houndofhell One Particle to Rule Them All

    Joined:
    9 Jul 2009
    Posts:
    330
    Likes Received:
    18
    I'm sorry to say i laughed when i read this article, the fact that they still have people making the same mistakes even when its common sense not to open an attachment or link in an email unless you were explicitly expecting it.

    Also the fact that they're calling that a sophisticated attack worrys me greatly.

    *sigh* when will they learn
     
  11. memeroot

    memeroot aged and experianced

    Joined:
    31 Oct 2009
    Posts:
    1,215
    Likes Received:
    19
    remember the glory days of the 'love bug'?

    The blis of sending it down to it (in .txt) with full breakdown and instructions for removal only for 10 seconds later them send me a missive

    Vb exploits

    ahhhhhhhhhhhhhhhhhh babies
     
  12. Cthippo

    Cthippo Can't mod my way out of a paper bag

    Joined:
    7 Aug 2005
    Posts:
    6,785
    Likes Received:
    103
    And the whole thing became a national news story.

    Where do we find these reporters?

    I was flipping through the Air Force Freedom of Information Act archives the other day and there was an entry about "Operation catch an eagle". The IT folks at one of the major commands created a phishing email and sent it out to everyone in the command. Anyone who responded got their account yanked and had to undergo remedial IT training. Maybe if more agencies did this the situation would improve.

    Someday I would like to compromise a spam site and everyone who clicked on it got a huge message about 'YOU ARE THE PROBLEM WITH THE INTERNET!". IIRC South Korea did that a while back, but I have no idea if it got the point through. Maybe you could create a trojan that when the user clicks on it rootkits in anti-virus software.

    I don't know if it would accomplish anything, but damn it would be entertaining!
     
  13. thehippoz

    thehippoz What's a Dremel?

    Joined:
    19 Dec 2008
    Posts:
    5,780
    Likes Received:
    174
    yeah he fell for the slippyfist
     
  14. Repo

    Repo What's a Dremel?

    Joined:
    12 Jan 2011
    Posts:
    259
    Likes Received:
    18
    This has been said "off the record" but in public in the past, especially by the US. I'm surprised there hasn't been a wikileak on this yet, but then maybe that's to come.
     
  15. Flibblebot

    Flibblebot Smile with me

    Joined:
    19 Apr 2005
    Posts:
    4,829
    Likes Received:
    297
    OK, it's worrying about the ignorance of users in government, but it's also worrying about the level of IT support in government: for starters, why are they not using up to date AV software? Moreover, presumably all internet traffic goes through a proxy/firewall, so why is traffic not screened as it enters Whitehall?

    With the all-pervasive nature of technology, and especially the Internet, in today's society, having a government that is so out of touch with technology is just not good enough.
     
  16. BRAWL

    BRAWL Dead and buried.

    Joined:
    16 Aug 2010
    Posts:
    2,668
    Likes Received:
    186
    because not all our data is TOP-SECRET UBER SECURE stuff dude. I work for said government and we have more than enough data protection and encryption on hand to deal with most issues. I.e. we can't send attachments to an external source with a massive hand of encryption forcing itself in there and screwing everything up lovely.

    Also please remember that not everything gets sent to one HUGE server, despite what the Daily Mail states. I wish it did, then I catch more fraudulant little gits in the act, but it just doesn't work like that. Data Protection Laws provide a necissary barrier against this kind of extreme-centralised government database.

    Alot of traffic is screened, AV is updated daily at my place, we even have two networks to log into at work before we can even access our programs.

    We're as secure as can be bro.
     
  17. steveo_mcg

    steveo_mcg What's a Dremel?

    Joined:
    26 May 2005
    Posts:
    5,841
    Likes Received:
    80
    Almost nothing i handle is secret but my company still has every thing described by fibble and this email would not have hit my inbox. This is basic security, i'd expect the stuff that is Top Secret to be handled in a more secure fashion than that employed by a consultancy.

    Maybe this goes back to the conversation earlier about public sector pay and it not being suffcient to compete with the private sector.
     
  18. BRAWL

    BRAWL Dead and buried.

    Joined:
    16 Aug 2010
    Posts:
    2,668
    Likes Received:
    186
    Hmmm not really. I'd just expect it to be deleted by the person who recieves it. But there again we have a heck-tonne of protection on our e-mail accounts chap including incoming filters. I'll agree that the issues some people have with tech is the fact that they go "ARGH I CANT DO TECHNOLOGYMAKING!" which is frustrating for people like me who do.

    No?
     
  19. memeroot

    memeroot aged and experianced

    Joined:
    31 Oct 2009
    Posts:
    1,215
    Likes Received:
    19
    I can only think of one firm I've worked at that prevented me downloading the credit card numbers of every customer on to usb.... and even that could be bypassed.
     
  20. steveo_mcg

    steveo_mcg What's a Dremel?

    Joined:
    26 May 2005
    Posts:
    5,841
    Likes Received:
    80
    Its been my experience that relying on your end user to have the smallest amount of sense is a poor game plan :D. Every thing I design is taken from that assumption and still users can surprise me at the unexpected level of difficulty they can find them selves in.
     

Share This Page