Publié par : pintejp | janvier 24, 2014

Vital infrastructure a cyber-terrorism timebomb EU warns

http://www.slashgear.com/vital-infrastructure-a-cyber-terrorism-timebomb-eu-warns- 22314159/
Chris Davies
22/01/2014
Vital control systems used by energy, water, and transportation are ill-prepared to cope with online terrorism and hacking threats, the EU’s cyber security agency has warned, blaming patchy and inconsistent testing for what could be a potential infrastructure disaster. Industrial Control Systems (ICS) are « often outdated » ENISA points out, while their expected lifespan of 20 years or more fails to incorporate the sort of security features essential to withstand cyber- terrorism attacks.
« They are not prepared to deal with current threats » ENISA concludes, before setting out a list of recommendations for the Europe-wide testing processes it suggests are now essential. The guidelines address « poor planning, lack of information, security configurations, as well as with the incorporation of both well-known and new, undiscovered or yet unpatched « zero-day » vulnerabilities into ICS/SCADA systems » the agency says.
For instance, ENISA argues that Europe now needs a standardized testing body that would take responsibility for a program of « harmonized » analysis. That should also come with an executive board that could « enforce » the programs, and various working groups to tackle individual key areas.

Read more here


Laisser un commentaire

Catégories