Advanced Persistent Threats

Securing SCADA systems from APTs like Flame and Stuxnet – Part 2

Professor Paul Dorey recently presented a paper about the seven important lessons the IT world has learned in managing Advanced Persistent Threats (APTs). In this article, I will discuss lessons #2, #3 and #4, and how to apply these lessons to ICS and SCADA security.

Securing SCADA systems from APTs like Flame and Stuxnet – Part 1

Recently a very complex worm called Flame has been discovered attacking companies in the Middle East, and it is an excellent example of what security experts call an Advanced Persistent Threat (APT). Figuring out how to defend against APTs is a major focus in the IT security world.

IF-MAP: A New Standard for SCADA Security that You Should Know About

Readers of this blog are familiar with the significantly increased level of threat to industrial control systems (ICS) that the Stuxnet malware and the publication of many SCADA zero-day vulnerabilities have created.

A Nasty New World of Cyber Threats for ICS and SCADA Security

February has not been a good month for ICS and SCADA security, at least not if you want to feel secure.

Stuxnet Guidance: The Good, the Bad and the Ugly

Over the past month, there has been no shortage of reports on how Stuxnet is attacking the Iranian Nuclear Program. Unfortunately, good advice on what exactly Industrial Control System (ICS) owner/operators can do to protect themselves against Stuxnet (and its future offspring) is in short supply. In fact much of what passes as technical guidance is either too IT-focused or simply wrong.

Pages

Subscribe to RSS - Advanced Persistent Threats