It appears you have not yet registered with our community. To register please click here...

 
Go Back [M] > Madshrimps > WebNews
Honeywell is a cyber-terror disaster in waiting Honeywell is a cyber-terror disaster in waiting
FAQ Members List Calendar Search Today's Posts Mark Forums Read


Honeywell is a cyber-terror disaster in waiting
Reply
 
Thread Tools
Old 7th February 2013, 06:25   #1
[M] Reviewer
 
Stefan Mileschin's Avatar
 
Join Date: May 2010
Location: Romania
Posts: 123,996
Stefan Mileschin Freshly Registered
Default Honeywell is a cyber-terror disaster in waiting

Honeywell's Niagara control system, which controls buildings' electricity, heating and other systems is vulnerable to internet attacks.

Despite warnings from US officials, it is possible to close down buildings completely using an internet attack.

The Niagara control system from Honeywell International's Tridium division are configured to connect to the web by default. It does not need to do this, but it does it anyway.

Insecurity experts from CyLance Billy Rios and Terry McCorkle told a security conference in San Juan, Puerto Rico that they uncovered vulnerabilities last year.

This prompted the Department of Homeland Security to warn customers to change their settings and resulted in Honeywell releasing a software update that the two researchers previously said had successfully addressed the problems.

But there are apparently more flaws in Tridium's technology that continue to make customers vulnerable to attack.

They showed the conference how they could take control of a Niagara system using a new piece of software they had written.

While they refused to say how they did it, they said that attackers could accomplish the same ends by taking advantage of weak encryption and passwords stored internally on the Tridium control devices.

In some cases, once the hackers had wrecked the company's physical environment they could use the hack as a gateway to getting into the building's main office computers.

A Honeywell spokesperson said the company is working to address the problems as quickly as possible and will alert customers of the risks.

http://news.techeye.net/security/hon...ter-in-waiting
Stefan Mileschin is offline   Reply With Quote
Reply


Similar Threads
Thread Thread Starter Forum Replies Last Post
2K Games Picks Up Carmageddon, Reservoir Dogs & Conflict: Global Terror jmke WebNews 0 17th February 2005 15:58

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


All times are GMT +1. The time now is 15:50.


Powered by vBulletin® - Copyright ©2000 - 2021, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO