Quantcast

Next: Cyberterrorism?

Security experts urge companies to guard against digital violence.

Dan Verton, Computerworld

  • 0 Yes
  • 0 No

WASHINGTON -- Government and private-sector security experts fear that yesterday's attacks against the World Trade Center and the Pentagon are only the beginning of a wave of assaults that could include cyberterrorism.

Officials at the FBI's National Infrastructure Protection Center (NIPC), located at FBI headquarters here, are gathering for an emergency meeting to collect and analyze all available cyberintelligence information, said Navy Rear Adm. James Plehal, the deputy director of the NIPC.

Meanwhile, Marv Langston, former deputy chief information officer at the Defense Department, views yesterday's physical terrorist attacks as an act of war and warns that they could be followed by a series of cyberattacks. Asked if the airplane attacks against the Pentagon and World Trade Center could be followed by a cyberattack, Langston answered, "I would be surprised if it was not."

On High Alert

Meanwhile, Atlanta-based Internet Security Systems (ISS), which operates the IT sector's Information Sharing and Analysis Center (ISAC), has placed its operations center on what it calls AlertCon 3 (the highest is AlertCon 4), "in order to focus IT security efforts on the potential for (and defense against) an Internet component to these attacks." The ISAC works with the FBI and the NIPC in sharing information about cyberthreats.

"Our monitored networks do not show any unusual activity at this time, but our [Security Operations Centers] are at a heightened state of alert as we watch for any indications that e-commerce is also being targeted," an ISS spokesperson says.

"This is a time to partner all security assets on what is most important to your enterprise," the ISS threat assessment states. "While physical security concerns are paramount, it is essential to keep some eyes on the networks focused on malicious activity."

Low-Tech Planning

The major question being asked by some experts is how such a large-scale, coordinated attack could have been accomplished without security officials being tipped off through cyber or communications intelligence. Most experts acknowledge, however, that only a handful of terrorist organizations in the world are capable of conducting such an operation in secret. And they likely used non-technical means of communications that would have allowed them to escape U.S. intelligence IT surveillance operations.

John Garber, vice president of Cryptec Secure Communications in Chantilly, Virginia, and a former National Security Agency official, says the capabilities of the U.S. intelligence community are "fairly well known" by the terrorist organizations that are suspects in this series of attacks.

"They do an awful lot of communications through messengers and non-digital methods," Garber says. "It's not like them to be walking around talking on telephones. This doesn't strike me as a signals intelligence failure as much as a failure of national [agency] coordination," he adds.

"This is a large and extremely well-coordinated attack. In spite of our best efforts to coordinate intelligence collection on terrorists, this is a massive failure of national cooperation," says Garber, who was in downtown Washington when the Pentagon was attacked. "I can't believe there were no indications."

Computerworld
For more enterprise computing news, visit Computerworld. Story copyright © 2007 Computerworld Inc. All rights reserved.

  • Recommend this story?
  • 0 Yes
    0 No

Print 65% more pages than with refilled inks. Trust Original HP Inks. Hit Print Reliably.

Featured APC Accessories For Your System
10% Off Entire Cart at Online Store

  • APC Back-UPS ES Safeguards your equipment from damaging surges and spikes that travel along your utility & data lines.
  • APC SurgeArrest Performance Highest level of protection for your professional computers, electronics and connected devices, as well as provides surge protection.

People who read this also read:

PC World's Marketplace