FBI, DHS say no evidence of a hack in an Illinois water district pump failure
- 24 November, 2011 06:28
- Comments
The FBI and Department of Homeland Security say they can't find evidence to confirm any of the story that an Illinois water authority's SCADA network was hacked and that it resulted in burning out a pump in the system.
"There is no evidence to support ... claims that any credentials were stolen, or that the vendor was involved in any malicious activity that led to a pump failure at the water plant," according to a story published by the BBC.
BACKGROUND: Apparent cyberattack destroys pump at Ill. water utility
"In addition, DHS and FBI have concluded that there was no malicious or unauthorized traffic from Russia or any foreign entities, as previously reported."
Word of a possible hack of the supervisory control and data acquisition (SCADA) system came out last week in a blog by Joseph Weiss, managing partner at Applied Control Systems LLC and author of the book Protecting Industrial Control Systems from Electronic Threat.
Weiss says he saw a document from the Illinois Statewide Terrorism and Intelligence Center (STIC) that that states user names and passwords were stolen from the SCADA consultant to the Curran-Gardner water district. The district noted what are referred to as glitches in its remote access system over the past few months.
Then earlier this month, someone accessing the network from a Russian IP address managed to turn the SCADA system on and off, which also turned the pump on and off, which resulted in its failure, he says.
The investigation by federal agencies found nothing to back up the story, but it didn't report any alternative reason for the pump problem.
The federal statement is at odds with a statement made by the chairman of the water authority Don Craver, to WLS-TV in Chicago.
"There's some indication there was a breach of some sort into a software program -- the SCADA system -- that allows remote access to the wells, and the pumps, and those sorts of things," Craver is quoted as saying.
Weiss says in a later blog that the notification he read from Illinois STIC should have been enough to trigger a cyber-attack response. "If DHS turns out to be correct in its assumptions, then anyone acting on the STIC warning would have been wasting precious resources addressing a problem that doesn't exist."
He says the system for issuing warnings needs to be scrutinized. If the STIC report is true, there was no response as there should have been. If the DHS is right, the STIC made an error that it hasn't acknowledged. The situation as it exists lacks both timely notification if there was an incident, and correct information if there wasn't.
Read more about wide area network in Network World's Wide Area Network section.
- Bookmark this page
- Share this article
- Got more on this story? Email TechWorld
- Follow TechWorld on twitter
- Illinois water authority hack: Threat has been looming for years
- BBC News - FBI plays down claim that hackers damaged US water pump
- FAQ: What you should know about Illinois water-district SCADA breach
- Water System Hack - The System Is Broken : ControlGlobal Community
- Downstate Illinois water system may be foreign cyber attack victim : abc7chicago.com
- The Illinois Water Hack Is a Test of the System for Disclosure – Is It Broken? : ControlGlobal Community
- LAN & WAN Research Center - Network World
- Teleworking made simple—and secure—with desktop virtualisation technology
- Optimised License Management for the Datacenter
- HP 3PAR Utility Storage - Benefits Summary - Next-Generation Storage for Virtual and Cloud Data Centers
- Best practices for a Data Warehouse on Oracle Database 11g
- Oracle Database 11g Product Family
-
CSIRO develops hands-free technology for mining repairs
-
Broadband Forum to improve IPTV performance with new spec
-
Amazon Web Services moves backups to cloud with new appliance
-
Callforfree.net.au offers free calls to 70 countries
-
Intel ponders solar-powered CPU tech in graphics, memory
-
Computers for Seniors for Dummies, 2nd Edition
-
Office 2007 All-In-One Desk Reference for Dummies
-
Windows 7 for Dummies®
-
Office 2007 for Dummies
-
Excel 2007 All-In-One Desk Reference for Dummies
-
Windows 7 for Seniors for Dummies®
-
MYOB Software for Dummies 6E Australian Edition
-
Teach Yourself Visually Windows 7
-
Windows 7 for Dummies® Dvd+book Bundle








Comments
Post new comment