SCADA / HVAC fail

| 0 TrackBacks

Without further ado, straight from Wikipedia:

"SCADA stands for Supervisory Control And Data Acquisition. It generally refers to an industrial control system: a computer system monitoring and controlling a process. The process can be industrial, infrastructure or facility based as described below:

  • Industrial processes include those of manufacturing, production, power generation, fabrication, and refining, and may run in continuous, batch, repetitive, or discrete modes.
  • Infrastructure processes may be public or private, and include water treatment and distribution, wastewater collection and treatment, oil and gas pipelines, electrical power transmission and distribution, civil defense siren systems, and large communication systems.
  • Facility processes occur both in public facilities and private ones, including buildings, airports, ships, and space stations. They monitor and control HVAC, access, and energy consumption."
This too:

"HVAC (pronounced either "H-V-A-C" or "H-vak") is an initialism or acronym that stands for "heating, ventilating, and air conditioning". HVAC is sometimes referred to as climate control and is particularly important in the design of medium to large industrial and office buildings such as skyscrapers and in marine environments such as aquariums, where humidity and temperature must all be closely regulated while maintaining safe and healthy conditions within. In certain regions (e.g., UK) the term "Building Services" is also used, but may also include plumbing and electrical systems. Refrigeration is sometimes added to the field's abbreviation as HVAC&R or HVACR, or ventilating is dropped as HACR (such as the designation of HACR-rated circuit breakers)."

Think hospital, think critical air-conditioning systems for surgery and sterilisation - think the screenshot below (click to enlarge).

envision1.pngA naughty security guard at a hospital (The Carrell Clinic in Dallas) installed some malware onto the HVAC systems that controls all this goodness and welcomed it to his botnet.  He then had remote control of it from his home.  To cut a long story short, he planned to shut it down on 4th July.  It was only his posting of these images to a forum and a security researcher spotting this that led him to being raided and arrested.

The full story is at The Register.

Here are some more screenshots (which he posted up) to show you why it is so important that these old school SCADA systems have appropriate security controls applied to them.  Again, click to enlarge.

envision2.pngenvision.pngI won't be checking into here anytime soon.

No TrackBacks

TrackBack URL: http://www.tomneaves.co.uk/cgi-bin/mt/mt-tb.cgi/58

Recent Entries

I got bored.
I got bored.  I'm back now though.  Watch this space.…
Friend or foe? Automated Malware Analysis and Identification
I am doing a PhD on the subject so it's only right I post something up related to it.  Whether…
Give us a flash! Introducing SWFScan, the Flash Security Scanner
The nice people at the Web Security Research Group over at HP have created a bit of goodness that will…
4f - The File Format Fuzzing Framework
If I had a pound for everytime I have said "it's all about your inputs, never trust your inputs" then…
Windows Sysinternals Tools Updated
Sysinternals has long been the choice for both analysing malware behaviour and in penetration tests with focus on application assessments. …
Aircrack-ng 1.0 released
As the title states, new version of the Aircrack-ng suite got released the other day... Changelog; - airserv-ng: Now works…
If Your Name's Not Down You Ain't Coming In - Impersonating Windows Services For Fun, Profit Or Just To Evade Group Policy
Apologies for the long title, I just couldn't resist. This article/blog post compliments my previous one on evading GPO and…
All Your Metadata Are Belong To Us, FOCA...
So, quite a hardcore time in Vegas.  If you ever get the chance to get table service in the Mirage's…
t0mn3av3s - Botnet Experiment
t0mn3av3s 217.112.87.104 - Botnet Experiment http://www.tomneaves.co.uk/t0mn3av3s.html Please ignore.  Will fill everyone in later.…
iPhone 3.0 Flaw - Auto Open Safari is a No No
Originally posted to Full-disclosure by Max Moser.Hi there, just in case you didn't see the post at my blog http://remote-exploit.blogspot.com/…