Showing posts with label Actors of Cyber Warfare. Show all posts
Showing posts with label Actors of Cyber Warfare. Show all posts

Thursday, May 19, 2016

Cyber Conflicts: Quiz 3 - Cyberwarfare and International Conflicts

This week quiz is also very simple and easy to comprehend and answer. However, if you require any suggestion or help about how to answer do mention in the comment and I will help with that.


1. Since 1999 cyber attacks have caused large-scale injury, loss of life and destruction of property.
  • True
  • False
2. Identify the item which has NOT been recognized as a mode of cyberwarfare attack and activity.
  • Information gathering and espionage
  • Disruption of services
  • Physical system attacks
  • Social media and propaganda
  • None of the above
3. The countries who conduct powerful cyber attacks are:
  • Russia and China
  • China and U.S.
  • U.S. and Russia
  • All of the above


4. What's the current level of threat of cyber attack of terrorist activity, aka cyber terrorism?
  • Cyber terrorism threat has been largely unfounded
  • Cyber terrorism threat is somewhat likely
  • Cyber terrorism threat is extremely likely and dangerous
  • Cyber terrorism often happened in the past but no longer a big issue
5. What's an example of a real event for an activity of non-state actors?
  • Citizens in Russia working to attack computers in Estonia
  • Bank personel in China using computers to attack Australia
  • Groups of thugs in Egypt using cyber attacks on Tunisia
  • None of the above
6. There are a defined set of cyber attack characteristics that can clearly identify the different types of actor motivations.
  • False
  • True
7. A 2009 attack on more than 30 companies including Google and Yahoo stealing intellectual property was attributed to Taiwan. Where were the hackers traced back to?
  • Taiwan
  • China
  • U.S.
  • Russia
  • Iran


8. ___________ of infrastructure means a failure in one element could cause cascading failures on multiple _____________ infrastructure components.

Choose the BEST set of terms to complete the phrase above:
  • interdependence; critical
  • association; cyber
  • criticality; complex
  • internet; cyber
  • comparability; internet
9. Techniques for censoring information include the following, except:
  • IT blocking
  • URL and packet filtering
  • Web feed blocking
  • DNS filtering
10. __________ are machines connected to the Internet who have been infected by a virus or spyware and may be used by others to cause damage to any computer or networks, including by "denial of service attacks" where multiple __________ can suck up the resources of certain critical computers connected to the Internet.
  • Modems, IPs
  • Bot nets; bots
  • Trojans; viruses
  • Computers; spams

Cyber Conflicts: Internet Censorship

Another looming battle that we see is of internet censorship.

When the governments try to control the public internet, a struggle over information content has caused international discord. Some governments are apprehensive about exposing their citizens to offensive material that might be morally, culturally, or politically deleterious. While other government and citizens' groups vociferously advocate free speech. Effective censorship requires multi layered access control, including laws and regulations, technical filtering, physical restrictions, surveillance, and monitoring, warnings as the last, arrests. Laws and regulations include penal codes, anti-terrorism laws, visual media laws, and legislation allowing government access to ISP and telecommunication company information. For instance, the Chinese government deploys firewalls and gateways to prevent access to certain IP addresses. It also performs DNS poisoning of specific websites and imposes harsh penalties on ISPs and organizations that carry content not permitted by Chinese law.

Many other countries also engage in online censorship including Bahrain, Burma, Cuba, Iran, Jordan, Kuwait, Saudi Arabia, the list goes on.

And even Germany and Switzerland censors specific web sites for content. Techniques for censoring information include IP blocking, DNS filtering, routing, url and packet filtering, as well as blocking the web feed. Internet content is also monitored through automated tools and manual inspection to block objectionable pages and ISP cooperation.

Censorship can, however, be circumventing through use of proxy servers, allowing anonymous access to censored material. These servers can be blocked and their use discouraged by government threats to shut down websites.

So there's a fight on the censorship fronts. The large companies sometimes fight back. For example, in 2010 Google threatened to remove its Google dot China search engine and website unless China allowed its search engine to access uncensored information.

Remove its offices from China, cancel media events and delay release of phones with Android operating system. These declarations were in response to a chain of hacker attacks on Google's servers.

Top Courses in IT & Software 728x90 And brought out the long growing battle of internet censorship into the open.

Concerning the economic consequences of such actions companies cooperating with governments receive preferential access to rights and contracts, while non cooperating companies can lead to potential harassment and litigation. Google was among the first in around 2006 to willfully abide by the Chinese internet censorship regulation. Despite public disapproval in the US, Google's decision, 2010, to suspend censorship rules in China in response to the attacks and is not only financial based but as retaliation for the espionage. The threat of Google alone may not warrant concern, but combined with other large companies such as Microsoft and Yahoo could pose a greater threat to China's situation than any government action.
Top Courses in Network & Security 728x90
Scholastic Teacher Store Spring Special ends 5/31/16
The leverage of companies against governments and the influence of individual governments have helped in

in multinationals is generally defined by local circumstances.

The complexity of the issue of government control of information is evident from both the public battle, and it is part communication company in motion and it would to mid 2011. When it had to engage with several countries, including China, India, Russia, Saudi Arabia, and UAE so that they could monitor Blackberry communication, ostensibly for fighting terrorism.
April2516-25off-sitewide468x60
Being a cross border network makes it difficult for RIM, or Research In Motion, the company that makes Blackberry, to comply with conflicting laws in different countries. For example, dealing with a call between US and somebody outside, let's say in China, can become very tricky, where US citizens are protected by US laws. China emphasizes the rights of the government to be able to intercept and monitor communication.

So there are a lot of such contentious issues that we are facing. And we need to face all of these issues as we go forward in the cyber warfare arena. There are several actors which have all independent motivation. There are several attacks that can be launched. But one thing is clear, the strategies of national governments are very strong in developing these cyber arsenals. And there's a cyber going on, and we need to discuss it and debate it and make sure this does not derail the free internet and all that we have come to expect of it. Thank you very much.

Cyber Conflicts: Future Battles - Threats to Critical Infrastructure

The cyber warfare incidents to date have not generated mass panic, and are driven more by citizen groups, rather than the overt government sponsored national campaigns. These past attacks were meant to send a political message. However, future attacks could have serious consequences, pitting nation against nation and requiring political as well as military intervention. One concern shared by all governments is that threat to critical infrastructure through electronic control systems.
Testive
The critical infrastructure is an easy target for enemy countries and rogue transnational since groups it is widely distributed geographically and left largely unprotected. The systems and manage water supply, power, oil and transport are all a part of the national critical infrastructure. Each represents different threat levels. The significant interdependencies can lead to unintended consequences during an attack.

The critical infrastructure is also increasingly under the control of SCADA systems. A supervisory control and data acquisition system. Probably through ease of remote monitoring and management. However, increased accessibility correlates with increased vulnerability to breach security. And as SCADA has become more and more homogeneous. The potential of breaches is further exacerbated since a single exploit could be used to attack multiple systems. They draw graphic distribution of critical infrastructure, the government recognizes as inability to protect everything. A key concern is that interdependence of infrastructure elements could mean a failure in a single element could cause devastating widespread damage in multiple critical infrastructure elements. The power grid is one of the most vulnerable including transmission lines, transformers, power stations and suppliers.
April2516-25off-sitewide468x60
In 2009 actually authorities found that many segments of the U.S. power Ggid had experienced and suspected hacker infiltration. Software tools are to be used to disable infrastructure while identified on the machines. Interdependencies in the power grid alone were evident from the blackouts throughout the Northeast US and Canada in August 2003. A failure of a single Ohio power plant led to complete blackout of the Northeast US, along with nearby connected portions of Canadian National Power System.

Given some fragility in the system, we need to be very careful in protecting our critical infrastructure from cyber attacks. In 2008, the US power grid in multiple regions was disrupted purportedly for the purpose of extorting money.

The water supply is another critical infrastructure.

Encompassing both fresh water supply and wastewater collection. The US has more than a 170,000 public water systems, including weather wise dams, wells, aquifers, treatment facilities, pumping stations, aqueducts, and transmission pipelines. Waste collection includes 19,500 sanitary systems and 800,000 miles of sewer lines. In October 2006, an unknown hacker gained control of water filtering plant in Harrisburg, installing software that affect the plant operations. Though the US water supply is well distributed for the country, presenting multiple soft targets.

Interdependencies are weak and the effect of any single attack would be localized affecting at most a few hundred people.

A fail bomb is easily repaired or restarted leading to quick recovery without any serious long term devastating consequences but again the potential is here.

The financial of, the failure of financial institution infrastructure is however, more serious. It could undermine public confidence in financial institutions, as well as the government.

Less clear is how to compare these financial losses to the loss of life or to injury. Not all infrastructure attacks are perceived as equally devastating.

The risk and interdependency analysis are needed to accurately determine the risks. There's a lot of work that needs to be done.

Cyber Conflicts: Cyber Warfare - Actors of Cyberwarfare

Cyberwar acts are continually morphing as a variety of actors are strengthening their skills and devise new ways to bolster their cyber arsenals that are growing both in sophistication and scale.

In order to be able to predict and envision how cyber warfare may evolve over time, we turn to examining the current actors and their motivations. So let's look at who these actors are.

The cyber warfare involves several actors including nation states, terrorists, sociopolitical groups. And they all differ in their primary intent and targets.

April2516-25off-sitewide468x60
Nation states aim to weaken the enemy nation to give the attacker wartime advantage. The terrorists generally inflict damage as a revenge, or as a show of strength leveraging it to solicit sponsors and recruits.

And sociopolitical groups create and relevance in political negotiations and policy formulation.

In some cases the distinction between terrorists and social political groups has blurred with groups defined by overlapping motivations.

Social political groups may have the tacit support of government organizations when their objectives align. In addition, secondary players work symbiotically or parasitically with major actors towards their own goals, with political or financial. Engaging in espionage or reconnaissance attacks on the internet infrastructure and the raw cyber vandalism.

The primary actors in the cyber warfare arena are states, non-state actors and international organizations. Arguably, anybody who uses the internet can become an actor in this arena.

Groups of state citizens targeting either their own government or other states, in this case, patriotic hacking, have influenced the course of domestic and international politics, which is a game changer.

In the past, states mostly watched on the sidelines as noisy hackers demonstrated their hacking skills by hacking each other's websites, often for bravado with little real impact.

Over the last few years, however, states have become the most active players in the cyber arena. Governments, military, and intelligence agencies have recognized the potential harm that cyber attacks could inflict on their countries information and communication infrastructure.

It's physical infrastructure, economy, as well as potential benefits of a cyber arsenal for counter attack and first strike capabilities.

So far, states have primarily focused on identifying vulnerabilities in enemy infrastructure, espionage, and intelligence gathering, but their stats are increasing acquiring hacker assets to be able to stay ahead of their adversaries in developing strategic cyber warfare capabilities. Several countries, including the United States, Russia, China, and Israel have gathered formidable arsenals of cyber weapons. However, they remain weak in defending against sophisticated cyber attacks. The point to note here is that, as we are collecting all of these cyber arsenals, the basic premise that the cyber ward is a stabilizer and equalizer against discrepancies. And the current expanse of countries is changing.

More money, more resources are giving more leverage to countries with more resources to have a better cyber arsenal. For the strategic advantage which some of the foreign countries have in being able to launch cheap and dirty attacks is changing. And the attacks are getting much more sophisticated. And there's a huge asymmetry in defense and offence, there are multiple targets to defend, when only a few vulnerabilities could be exploited for a successful attack. Therefore, most countries are fairly weak at defending against cyber attacks.

A major fear has been cyber attacks launched by Islamic terrorists, some of whom had demonstrated some initial hacking promise.

However, the fear of attacks by terrorists on critical infrastructure have not been realized.

And the threat of extreme harm posed by non-state actors has thus far proved unfounded.

Most of the attacks from such non-state actors are focused on propaganda and publicity to mobilize people to join their cause and join their fights.

But such cyber attacks have not directly caused much substantive damage. Sophisticated cyber attacks are no longer a matter of a viskit program, or executing a spectacular attack, but rather rigorous processes that require large investments in manpower, training, computing, equipment, and intelligence.

Most non set actors are unable to compete with the resources of large states. They, however, continue to effectively use social media and other web resources for fundraising, propaganda, and member recruitment.

The arena of cyber warfare has expanded steadily as internet connectivity and the number of individuals willing to use internet for political objectives grows. For instance, some attacks launched during the Russian conflict with Georgia, Estonia and involved Russian citizens, who prompted by nationalistic zeal work in mass to launch attacks against government and business websites in Estonia and Georgia. This has raised a spectrum of different form of war field, a cyber war that is conducted by civilians of one country against government institutions and civilians in another country but may or may not be state sanctioned or even controlled by the military of the state. Citizens are also involved actively in fomenting unrest against national governments in response to propaganda, information warfare of other countries. The Arab Spring triggered fear among many authoritative leaders of similar social, social media field revolutions. Which are in turn prompted them to constantly scour the network for activity that may catalyze into an uprising similar to the Arab Spring.
Testive
Ironically, even those days may store public outrage and basically support several attacks against adversaries. The same important citizens can strike back at the state to bring political change in their own countries. In addition to states, non-state actors and civilians, international organizations such as the United Nations, the Organization for Security and Cooperation in Europe, NATO and the Shanghai Cooperation Organization have become key players in fostering International cooperation aimed at reducing the threats to international peace, peace, and security posed by a possibility of full scale cyber warfare. The activities of each of these international organizations have, however, often reflect the narrow strategic interests of key state members. And despite strong rhetoric about cyber cooperation, and limiting the potential of conflicts, negotiations toward agreements and treaties often exhibit crucial differences among these key states and of the international organizations compose of these states.

An absence of this consensus is also influenced by insufficient credibility of international organizations to provide guarantee of compliance. With any cyber arms control or cyber peace treaties signed by member states.

Fundamental problems in actor definition lie in actors serving as proxys for others and in differing perception of actors. First, the distinction between state and non-state actors is often blurred because these non-state actors often have tacit and financial support as at the patronage of government organizations, such as Hezbollah being a proxy for Iran, the Russian Business Network being a proxy for Russian government and the Hidden Lynx hacking group being a proxy for the Chinese government. All of this are basically attributions to different organizations without concrete proof.

It is very difficult to prove the nexus conclusively, hence this ambiguity.

Second, the definition of terrorism differs based on perception. A social activist for some could be a terrorist for others. They have been making the distinction even fuzzier. For example, the cyber terrorism has been used to describe Al Qaeda's use of we to influence Young Muslim United States and Europe to join jihadis aimed at achieving Islamist objectives. Of course, some of the same protesters that have been initially categorized as cyber activists by using social media in protests against the Kadafi regime in Libya and the Assad regime in Syria, are now categorized as cyber terrorists because they also support implementation of sharia and establishment of Islamic states. And politically, in the case of Syria, use the internet to call upon Muslims in Europe and the United States to come join in the jihad against Assad's regime.

So this is a complex scenario.