<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Peter's Technology Trumpet : Security</title><link>http://blogs.technet.com/technology_trumpet/archive/tags/Security/default.aspx</link><description>Tags: Security</description><dc:language>en-GB</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Web World Order and the Baltic Border</title><link>http://blogs.technet.com/technology_trumpet/archive/2009/05/13/the-web-world-order.aspx</link><pubDate>Wed, 13 May 2009 13:30:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3240192</guid><dc:creator>SmallCountry</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/technology_trumpet/comments/3240192.aspx</comments><wfw:commentRss>http://blogs.technet.com/technology_trumpet/commentrss.aspx?PostID=3240192</wfw:commentRss><wfw:comment>http://blogs.technet.com/technology_trumpet/rsscomments.aspx?PostID=3240192</wfw:comment><description>&lt;p&gt;With global recession in the foreground threatening ruin for many in the developed World, it’s easy to forget other clear and present threats to commerce, society and our way of life.&lt;/p&gt;  &lt;p&gt;However, the growing threat of vandalism, crime and even espionage perpetrated using computer and network systems should certainly be higher up the agenda of your average UK citizen.&lt;/p&gt;  &lt;p&gt;Whilst prioritising the global war on terror, western countries have generally been poorly prepared to defend against the growth of organised Internet crime. Cyber Warfare and online terrorism are even more disturbing prospects as, in our increasingly connected world, computer and network systems we all depend on can be penetrated wreaking widespread havoc equivalent to any violent terrorism.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://blogs.technet.com/blogfiles/technology_trumpet/WindowsLiveWriter/FrontlineEstonia_6964/TallinnSmall_2.jpg"&gt;&lt;img style="border-bottom: 0px; border-left: 0px; display: inline; margin-left: 0px; border-top: 0px; margin-right: 0px; border-right: 0px" title="TallinnSmall" border="0" alt="TallinnSmall" align="right" src="http://blogs.technet.com/blogfiles/technology_trumpet/WindowsLiveWriter/FrontlineEstonia_6964/TallinnSmall_thumb.jpg" width="244" height="165" /&gt;&lt;/a&gt; In 2007 the world saw the first Cyber-attack on a sovereign state in the form of small EU member Estonia. A diplomatic spat with its powerful neighbour Russia quickly evolved into concerted Internet attacks including massive SPAM attacks on government email servers, distributed denial of service (DDoS) attacks on key Internet banking sites, and hacking/defacement of significant websites such as the ruling political parties homepage.&lt;/p&gt;  &lt;p&gt;In 2008 as the Russian military annexed the province of South Ossetia, a co-ordinated cyber-attack blocked key Georgian Government websites.&lt;/p&gt;  &lt;p&gt;Whilst there was evidence that these attacks were Russian orchestrated, as any Internet security expert will tell you, the use of Botnet's and Zombies around the World makes the ultimate source of attacks almost impossible to identify. The Kremlin, with Litvinenko-esque brass neck, denied all involvement.&lt;/p&gt;  &lt;p&gt;Whilst the plight of small nations in Eastern Europe is of some concern here in Scotland, its worth remembering that the World Order is generally shaped by those nations and organisations with access to new weapons technologies and military strategies. Consider the 2&lt;sup&gt;nd&lt;/sup&gt; World War - Superior German tank technology and mastery of armoured warfare allowed the Nazi powers to quickly “Blitzkreig” across Poland in 1939 despite stronger Allied forces. The deployment of the nuclear fission bomb in 1945 ended this war and defined World order for the next 45 years. &lt;/p&gt;  &lt;p&gt;Even now, the world order is largely subservient to the United States, whose economic powerhouse allows it to deploy more aircraft carriers and accurate, high speed projectiles than any other nation. Whilst this could be considered reassuring to the national security of its close ally the United Kingdom, it seems likely that future international power struggles will feature the Cyber battlefield as an important theatre of operations, and those nation-states with mastery of its weapons and techniques will prevail. &lt;/p&gt;  &lt;p&gt;&lt;a href="http://blogs.technet.com/blogfiles/technology_trumpet/WindowsLiveWriter/FrontlineEstonia_6964/Pentagon_2.jpg"&gt;&lt;img style="border-bottom: 0px; border-left: 0px; margin: 5px; display: inline; border-top: 0px; border-right: 0px" title="Pentagon" border="0" alt="Pentagon" align="left" src="http://blogs.technet.com/blogfiles/technology_trumpet/WindowsLiveWriter/FrontlineEstonia_6964/Pentagon_thumb.jpg" width="244" height="164" /&gt;&lt;/a&gt; The USA’s new administration is aware that economic might and ocean borders cannot defend from cyber security threats. The Pentagon recently revealed it was on the back foot with cyber attack damage limitation costing $100M in last 6 months alone. The Wall Street Journal reported last month that Chinese and Russian spies had penetrated the U.S. electrical grid to leave “sleeper” software which could be used to &lt;a href="http://online.wsj.com/article/SB123914805204099085.html"&gt;disrupt key infrastructure&lt;/a&gt;. &lt;/p&gt;  &lt;p&gt;Again, the embassies of both countries vehemently denied any knowledge of this. It is extremely difficult to trace and prove the identity of an attacker, and therefore nigh on impossible to prove whether an attack is government sponsored. However, the league table of &lt;a href="http://software.silicon.com/malware/0,3800003100,39170122,00.htm"&gt;malware producing nations&lt;/a&gt; show that China and Russia together are responsible for well over half of the Internet’s spyware and malicious code.&lt;/p&gt;  &lt;p&gt;No surprise then that since election Barack Obama earmarked $335M for private and public sector cyber infrastructure, not including any secret funding for the National Security Agency, and is about to appoint a cabinet level “cyber-czar”.&lt;/p&gt;  &lt;p&gt;Finding the perpetrators of Internet crimes and aggression is notoriously difficult and requires painstaking detective work. The conviction in May of 8 men on child pornography charges in the High Court at Edinburgh, following a long, multi-agency investigation codenamed &lt;a href="http://www.lbp.police.uk/information/algebra/index.asp"&gt;Operation Algebra&lt;/a&gt; and a 10 week trial, was only possible because of the dedication of Lothian and Borders Police, and the aid of leading edge techniques made available by academia and Microsoft.&lt;/p&gt;  &lt;p&gt;As many nations wake up to the need for improved Cyber defences, tiny Estonia has emerged as the worldwide leader in the field. &lt;/p&gt;  &lt;p&gt;Estonia is possibly the most switched on of the EU countries in terms of penetration of paperless government, web-based banking and ambitious plans for country-wide WiMAX networks. Whilst 2007’s Russian internet attacks were underway the Estonian government called in the top Internet security spooks from NATO, US Security agencies and elsewhere. &lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.ccdcoe.org/" target="_blank"&gt;&lt;img style="border-bottom: 0px; border-left: 0px; margin: 5px; display: inline; border-top: 0px; border-right: 0px" title="CCDCOE" border="0" alt="CCDCOE" align="left" src="http://blogs.technet.com/blogfiles/technology_trumpet/WindowsLiveWriter/FrontlineEstonia_6964/CCDCOE_3.jpg" width="221" height="244" /&gt;&lt;/a&gt; Subsequently the &lt;a href="http://www.ccdcoe.org/"&gt;Co-operative Cyber Defence Centre&lt;/a&gt; has been established in Tallinn as the NATO centre of excellence for this key area of defence. The U.S. Secretary of defence Robert Gates announced the USA would join the Cyber Defence Centre as a sponsor. And just last week, Shawn Henry the FBI Assistant Cybercrime Director revealed that the he would be basing his top cybercrime agents in the Baltic State.&lt;/p&gt;  &lt;p&gt;Meanwhile it seems that the UK is waking up to the threat and will take some steps to consolidate responsibility for the cybercrime remit currently spread across multiple agencies. David Davis, the shadow Home Secretary, announced that the Conservatives would follow Barack Obama’s lead and appoint a &lt;a href="http://news.bbc.co.uk/1/hi/uk_politics/7327082.stm"&gt;Cabinet-level CyberSecurity&lt;/a&gt; Minister if elected into Governement.&lt;/p&gt;  &lt;p&gt;Likewise, the &lt;a href="http://www.ccdcoe.org/118.html"&gt;Commons Defence Comittee trip to Estonia’s Cyber Defence Centre in April&lt;/a&gt; suggests that the UK will be next to join the Americans in the Cyber defence trenches at the Baltic Border.&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3240192" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/technology_trumpet/archive/tags/Estonia/default.aspx">Estonia</category><category domain="http://blogs.technet.com/technology_trumpet/archive/tags/Security/default.aspx">Security</category></item><item><title>Baiting the Bear and Zapping the Zombies</title><link>http://blogs.technet.com/technology_trumpet/archive/2007/05/29/baiting-the-bear-and-zapping-the-zombies.aspx</link><pubDate>Tue, 29 May 2007 18:59:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1097386</guid><dc:creator>SmallCountry</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/technology_trumpet/comments/1097386.aspx</comments><wfw:commentRss>http://blogs.technet.com/technology_trumpet/commentrss.aspx?PostID=1097386</wfw:commentRss><wfw:comment>http://blogs.technet.com/technology_trumpet/rsscomments.aspx?PostID=1097386</wfw:comment><description>&lt;p&gt;The internal affairs of the small Baltic republic of Estonia hit the global news headlines in April when its ethnic Russian minority &lt;a href="http://news.bbc.co.uk/1/hi/world/europe/6598269.stm" target="_blank"&gt;rioted in protest of the removal of a Red army war memorial&lt;/a&gt;. &lt;/p&gt; &lt;p&gt;&lt;img height="152" alt="Estonian capital Tallinn " hspace="0" src="http://newsimg.bbc.co.uk/media/images/40656000/jpg/_40656993_tallinn_ap.jpg" width="203" border="0"&gt;&lt;img height="152" alt="Police face protesters in Tallinn" hspace="0" src="http://newsimg.bbc.co.uk/media/images/42853000/jpg/_42853693_police_afp203.jpg" width="203" border="0"&gt;&lt;img height="152" alt="Memorial to Soviet soldiers in Tallinn, Estonia" hspace="0" src="http://newsimg.bbc.co.uk/media/images/42442000/jpg/_42442347_memorial203.jpg" width="203" border="0"&gt;&lt;/p&gt; &lt;p&gt;As a resident of another small country, I know that the weight of history can cause a difficult relationship with a more powerful neighbor.&amp;nbsp;But Culloden was 350 years ago - for some ethnic Estonians&amp;nbsp;the demise of the 1st Estonian republic and mass deportations&amp;nbsp;following the 2nd World War are still within &lt;a href="http://news.bbc.co.uk/1/hi/world/europe/1107800.stm" target="_blank"&gt;living memory&lt;/a&gt;. (Disclaimer: Regular readers of this column will know that as Mrs Ferry hails from Estonia, I may express some bias.) &lt;/p&gt; &lt;p&gt;The Kremlin's response to these events bordered on the &lt;a href="http://news.bbc.co.uk/1/hi/world/europe/6638029.stm" target="_blank"&gt;sinister&lt;/a&gt;, with threatened sanctions and a failure to defend the Estonian embassy in Moscow against pro-Kremlin youth groups. Its all a bit scary for a country of 1.3 million people positioned next to the Kremlin's military might, which perhaps Estonian PM Andrus Ansip should have considered before he started baiting the Russian bear by removing the statue of the Red Army soldier.&lt;/p&gt; &lt;p&gt;Meanwhile back in the UK the Baltic political situation is of some interest to any follower of&amp;nbsp;international news, but more significantly we may just have witnessed the&amp;nbsp;first &lt;a href="http://www.iht.com/articles/2007/05/28/business/cyberwar.php" target="_blank"&gt;CyberWar&lt;/a&gt; on record.&amp;nbsp;By mid-May it became apparent that Estonian government, media, email and commercial web servers were under a deliberate and targeted attack. These took the form of massive spam attacks on government email servers, distributed denial of service attacks on key Internet banking sites, and hacking/defacement of significant websites such as the ruling political parties homepage.&lt;/p&gt; &lt;p&gt;Estonia is possibly the most switched on of the EU countries in terms of penetration of paperless government, web-based banking and ambitious plans for country-wide WiMAX networks. So the Estonian government considered this a substantial threat to national security, and didn't take long to call in the Internet security spooks from NATO, Israel and elsewhere. The attacks peaked around the time of the Russian Victory Day public holiday on May 9th. The most damaging attack was probably on national bank Hansapank's website, which was forced to shut down for an hour - and for a week or so afterwards, I found that along with all foreign IP addresses, I had been blocked from their Internet banking site - a simple but effective line of defence. The skills and preparedness of Estonian companies, their IT security experts, and the swift response of international partners were all instrumental in avoiding more serious consequences.&lt;/p&gt; &lt;p&gt;Whilst there was some evidence that these attacks were Kremlin sponsored, as any Internet security expert will tell you, the use of Botnet's and Zombies around the World makes the ultimate source of the attack almost impossible to identify. But its clear that this was an orchestrated and organised attack, and was a highly successful terrorist attack on a sovereign state. The Kremlin has denied all involvement, but&amp;nbsp;conspiracy theorists will point the finger at Putin following the &lt;a href="http://news.bbc.co.uk/1/hi/uk/6163502.stm" target="_blank"&gt;Alexander Litvinenko&lt;/a&gt; affair. And now there is even now some &lt;a href="http://www.times.spb.ru/index.php?action_id=2&amp;amp;story_id=21759" target="_blank"&gt;evidence of counter-attacks from Estonia&lt;/a&gt;&amp;nbsp;&lt;/p&gt; &lt;p&gt;What this situation has graphically illustrated is that IT Security is&amp;nbsp;no longer an issue which is only important to Chief Security Officers and IT Security propeller-heads. Scotland's top technology journalist Bill Magee pointed out that "CORPORATE Scotland [...] could be hit by exactly the same sort of &lt;a href="http://scotlandonsunday.scotsman.com/business.cfm?id=821622007" target="_blank"&gt;cyber criminal attack&lt;/a&gt; that brought state and commercial website systems crashing to a halt"&amp;nbsp;&amp;nbsp;&lt;/p&gt; &lt;p&gt;Here in Microsoft Scotland, we continue to invest in our network of Partner companies with the Security Solutions competency. These companies have proven skills and experience in design and deployment of the security infrastructure, policy and&amp;nbsp;tools. With the availability of &lt;a href="http://www.microsoft.com/forefront/clientsecurity/default.mspx" target="_blank"&gt;Forefront Client Security&lt;/a&gt;, Microsoft is unique in providing a comprehensive line of business security tools which can help Corporate Scotland establish robust Internet defenses. &lt;/p&gt; &lt;p&gt;Only&amp;nbsp;with the right partners, skills and tools will we keep the zombies at bay.&lt;/p&gt; &lt;p&gt;&lt;a href="http://www.times.spb.ru/index.php?action_id=2&amp;amp;story_id=21759"&gt;Link to The St. Petersburg Times - Top Stories - Estonian Claims Kremlin Behind Attacks on Web Sites&lt;/a&gt; &lt;/p&gt; &lt;p&gt;&lt;a href="http://scotlandonsunday.scotsman.com/business.cfm?id=821622007" target="_blank"&gt;Link to Scotland Warned of attack by Zombies&lt;/a&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1097386" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/technology_trumpet/archive/tags/Scotland+Technology/default.aspx">Scotland Technology</category><category domain="http://blogs.technet.com/technology_trumpet/archive/tags/Estonia/default.aspx">Estonia</category><category domain="http://blogs.technet.com/technology_trumpet/archive/tags/Security/default.aspx">Security</category></item></channel></rss>