Cybersecurity researchers next week will demonstrate how hackers can potentially wreak havoc on critical US infrastructure, even causing explosions by altering the readings on wireless sensors used by the oil and gas industry.

The presentations at the Black Hat conference will show how key industries remain vulnerable to cyber attacks, in part because companies are reluctant to replace expensive equipment or install new safeguards unless ordered to do so by regulators or offered economic incentives, experts say.

“We’ve got this cancer that is growing inside our critical infrastructure. When are we going to go under the knife instead of letting this fester?” said Patrick C. Miller, founder of the nonprofit Energy Sector Security Consortium.

“We need to restructure some regulations and incentives.”

The new research on wireless sensors found flaws in the way they handle encryption, Lucas Apa and Carlos Mario Penagos of security consulting firm IOActive Inc said.

They said they could contact some of the sensors with radio transmissions from as far as 40 miles (64 km) away and alter pressure, volume and other readings. If the overall control systems act on those readings without a failsafe, the researchers said, they could permanently disable a pipeline or plant.

The sensors typically cost $1,000 or $2,000 and are deployed in the hundreds or thousands at a single oil, gas or water processor. The researchers said the flaws were found in devices supplied by three of the largest vendors in the field, but declined to identify them.

Penagos said most refineries that have the capability to monitor gas levels or temperature probably have the vulnerable devices in place. In some cases the sensors have a design flaw, while in other cases the customers installed them insecurely.

Either way, “the entire industrial process could be disabled or modified by disrupting the physical sensors,” Apa said.

Source: One News

Got stuck with research paper writing? The following site PapersMart helps with research papers online with its professional writers.


Juniper EX4200-48PX 48-Port PoE+ Switch 10/100/1000BaseT picture

Juniper EX4200-48PX 48-Port PoE+ Switch 10/100/1000BaseT

$180.00



JUNIPER NETWORKS Qfx5100-48s-afi 48Port 10 Gigabit Ethernet Switch *WORKING*NC picture

JUNIPER NETWORKS Qfx5100-48s-afi 48Port 10 Gigabit Ethernet Switch *WORKING*NC

$1599.99



JUNIPER EX3300-24T - 24-Port 1Gb + 4-Port SFP 10Gb Ethernet Switch - Tested picture

JUNIPER EX3300-24T - 24-Port 1Gb + 4-Port SFP 10Gb Ethernet Switch - Tested

$145.00



Juniper EX2300-24P Rack Mountable Ethernet Switch picture

Juniper EX2300-24P Rack Mountable Ethernet Switch

$550.00



JUNIPER NETWORKS EX2200-48P-4G PoE 48 port network Gigabit switch picture

JUNIPER NETWORKS EX2200-48P-4G PoE 48 port network Gigabit switch

$68.00



Juniper EX3300-24P 24 Port Switch picture

Juniper EX3300-24P 24 Port Switch

$160.00



Juniper EX3300 48-Port PoE+ Ethernet Switch EX3300-48T-BF picture

Juniper EX3300 48-Port PoE+ Ethernet Switch EX3300-48T-BF

$849.99



JUNIPER QFX5100-48S-AFI SWITCH 48 SFP+ 6QSFP  2xPSUs TESTED AND WORKING picture

JUNIPER QFX5100-48S-AFI SWITCH 48 SFP+ 6QSFP 2xPSUs TESTED AND WORKING

$1599.99



Juniper Networks EX4300-48P 48Port GbE PoE+ Switch 1000Base-T EX 4300 48P picture

Juniper Networks EX4300-48P 48Port GbE PoE+ Switch 1000Base-T EX 4300 48P

$243.00



Juniper Networks EX3300-24P 24 Port Gigabit PoE 4 SFP 1/10G Network Switch picture

Juniper Networks EX3300-24P 24 Port Gigabit PoE 4 SFP 1/10G Network Switch

$299.00