Re: [Full-Disclosure] Fw: Computers crashed just before blackout

From: Michael Scheidell (scheidell_at_secnap.net)
Date: 08/30/03

  • Next message: Paul Schmehl: "RE: [Full-Disclosure] Authorities eye MSBlaster suspect"
    To: Geoff Shively <gshively@pivx.com>
    Date: Fri, 29 Aug 2003 18:25:05 -0400 (EDT)
    
    

    (notes below...)

    >
    > ----- Original Message -----
    > From: "Richard M. Smith" <rms@computerbytesman.com>
    > To: <cta@hcsin.net>; "'Michael Scheidell'" <scheidell@secnap.net>; "'Alan
    > Kloster'" <akloster@spp.org>; "'Geoff Shively'" <gshively@pivx.com>; "'Drew
    > Copley'" <dcopley@eeye.com>
    > Sent: Friday, August 29, 2003 6:35 AM
    > Subject: Computers crashed just before blackout
    >
    >
    > > http://www.cleveland.com/news/plaindealer/index.ssf?/base/news/106207424
    > > 774610.xml
    > > Computers crashed just before blackout
    > >
    > > 08/28/03
    > >
    > > John Funk Teresa Dixon Murray and Tom Breckenridge
    > > Plain Dealer Reporters
    > >
    > > FirstEnergy Corp. could not see mounting transmission line problems in
    > > the crucial hour before the Aug. 14 blackout because its key computers
    > > were down, according to at least two municipal electric systems.
    > >
    > > Whether the computer troubles were the result of hardware or software
    > > problems was not known yesterday. Investigators from the Department of
    > > Energy have visited the utility's Akron control center, said spokesman
    > > Ralph DiNicola.
    > >
    > > FirstEnergy is detailing how the control center computers operated that
    > > day for the DOE, said DiNicola. He repeatedly declined to say whether
    > > there were any computer problems.
    > >
    > > ...

    Yep, looks like the HMI systems (that allow the humans to see warnings
    and
    critical situations) and to manually reroute power went down.

    Bet you 30,000 quatros that those HMI systems communicated to the SCADA
    systems via DCOM.

    Time for our lobbiests in DC to get to work, making sure all critical
    infostructure systems, utilities, water, power, traffic, AIR CONTROL
    update their best practices

    Also time for HMI/SCADA/FA vendors to update their clients, and make sure
    that this won't happen again.

    Looks like the clients/end users will need to firewall their SCADA/FA
    systems and forget the microsoft 'COTS' (commercial off the shelf)
    office/factory integration promise.

    -- 
    Michael Scheidell, CEO
    SECNAP Network Security, LLC 
    Sales: 866-SECNAPNET / (1-866-732-6276)
    Main: 561-368-9561 / www.secnap.net
    Looking for a career in Internet security?
    http://www.secnap.net/employment/
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    

  • Next message: Paul Schmehl: "RE: [Full-Disclosure] Authorities eye MSBlaster suspect"

    Relevant Pages

    • [Full-Disclosure] Fw: Computers crashed just before blackout
      ... Computers crashed just before blackout ... > Energy have visited the utility's Akron control center, ... > Ralph DiNicola. ...
      (Full-Disclosure)
    • Re: Just venting (totally OT)
      ... Lots of scooters have some sort of ... it's fearsomely difficult to control a bike going slowly. ... different - most bikes use a clutch that runs in the engine oil, ... having four computers to do the job of one. ...
      (uk.people.support.depression)
    • Re: MP, tools & algs
      ... better intellectual tools than computers. ... A computer is a physical tool to leverage intellectual tools. ... People like to see control dependences as well. ... are juxtaposed in a program trace are juxtaposed in the code (using one ...
      (comp.arch)
    • Re: OT: Airbus computers may have malfunctioned
      ... Airbus), and the control surfaces. ... A lightning strike can be ... such a source, though most airplane are well shielded against this, ... The control computers are theoretically ...
      (rec.music.classical.guitar)
    • Re: How big would an SSTO be?
      ... several million computers that are *right now* under the surreptitious ... In an ATC system all software used would be ... Attempts to crash them result in the removal of control from the ... In general we insist that safety critical systems are triplicated. ...
      (sci.space.policy)