Flash drive exposed US war plans

Powered by SC Magazine
 

Old thumb drive trick.

A senior Pentagon official will outline the anatomy of a 2008 attack on its military's Central Command system, which he admits was triggered by a booby-trapped thumb drive.

Malicious code, which escaped US security systems, had found its way into key Defense networks after the thumb-drive was inserted into a laptop in the field.

The trap helped expose US war plans in Iraq and Afghanistan and has been described as the "most significant" military security breach in history.

"That code spread undetected on both classified and unclassified systems, establishing what amounted to a digital beachhead, from which data could be transferred to servers under foreign control," US Deputy Defense Secretary William J Lynn III, wrote in an essay for Foreign Affairs previewed by the New York Times and Washington Post.

Lynn declassified the security incident in an effort to raise the level of concern in the US congress over military information security, pointing to both hacker and supply chain threats as additional complexities to protecting 7 million devices and 15,000 networks from infiltration.

The Defense Department had banned CDs, USB drives and other removable media after the 2008 incident, however partially lifted the ban earlier this year.

Copyright © iTnews.com.au . All rights reserved.


Flash drive exposed US war plans
 
 
 
Top Stories
NSW Govt gets ready to throw out the floppy disks
[Opinion] Dominic Perrottet says its time for government to catch up.
 
iiNet facing new copyright battle with Hollywood
Fighting to protect customer details.
 
The CISO’s dilemma: Do you trust your partner’s partner?
[Blog post] How far down the chain do you check?
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
In which area is your IT shop hiring the most staff?




   |   View results
IT security and risk
  25%
 
Sourcing and strategy
  12%
 
IT infrastructure (servers, storage, networking)
  22%
 
End user computing (desktops, mobiles, apps)
  15%
 
Software development
  26%
TOTAL VOTES: 320

Vote
Would your InfoSec team be prepared to share threat data with the Australian Government?

   |   View results
Yes
  57%
 
No
  43%
TOTAL VOTES: 125

Vote