Hackers Penetrate Freedom; The Ship Has Already Sailed

Reuters has a report I found sort of punny, about how white hat hackers had managed to break into the computer systems of the lead ship of the Navy’s Littoral Combat Ship program, the USS Freedom.

A Navy team of computer hacking experts found some deficiencies when assigned to try to penetrate the network of the USS Freedom, the lead vessel in the $37 billion Littoral Combat Ship program, said the official, who spoke on condition of anonymity.

The Freedom arrived in Singapore last week for an eight-month stay, which its builder, Lockheed Martin Corp., hopes will stimulate Asian demand for the fast, agile and stealthy ships.

It may be ironic that Lockheed had a ship get hacked just before it sent the ship out on a sales trip to Asia. (Asia! Where our most fear hacking-rival is!)

But … um, Lockheed?

Lockheed, of course, couldn’t keep the F-35 program safe from hackers either, and that time it wasn’t white hats doing the hacking.

Before the government imposes fines for companies unwilling to sacrifice the security of their systems to program in a backdoor, as the WaPo reports is being debated …

A government task force is preparing legislation that would pressure companies such as Face­book and Google to enable law enforcement officials to intercept online communications as they occur, according to current and former U.S. officials familiar with the effort.

[snip]

Susan Landau, a former Sun Microsystems distinguished engineer, has argued that wiring in an intercept capability will increase the likelihood that a company’s servers will be hacked. “What you’ve done is created a way for someone to silently go in and activate a wiretap,” she said. Traditional phone communications were susceptible to illicit surveillance as a result of the 1994 law, she said, but the problem “becomes much worse when you move to an Internet or computer-based network.”

Marcus Thomas, former assistant director of the FBI’s Operational Technology Division, said good software coders can create an intercept capability that is secure. “But to do so costs money,” he said, noting the extra time and expertise needed to develop, test and operate such a service.

… Maybe we ought to instead focus on Lockheed’s apparent inability to keep the hundreds of billion dollar weapons systems it produces safe from hackers?

Tweet about this on Twitter4Share on Reddit0Share on Facebook0Google+0Email to someone

3 Responses to Hackers Penetrate Freedom; The Ship Has Already Sailed

Emptywheel Twitterverse
bmaz RT @JackofKent: Today the Tories will deride the Human Rights Act, which you can enforce in court, and praise Magna Carta, which you cannot.
2hreplyretweetfavorite
bmaz @MonaHol @emptywheel It absolutely is worth it. More people should understand what's being done. It is just sad this is "news" cause its not
3hreplyretweetfavorite
emptywheel @MonaHol I believe it can be shown to be either non-compliant or partial, but haven't looked closely yet. @bmaz
3hreplyretweetfavorite
emptywheel @MonaHol What is actual news abt ACLU release is govt has now committed to what their 12333 compliance is. @bmaz
3hreplyretweetfavorite
emptywheel @MonaHol Glad docs are out so other people stop getting snookered by sources. But that was easily avoidable. @bmaz
3hreplyretweetfavorite
emptywheel @MonaHol It was also laid out in FISCR opinion declassed in 2009. Big part of 2007 debate on FAA. And so on and so on @bmaz
3hreplyretweetfavorite
emptywheel @MonaHol For those who haven't read 2009 docs this might be surprising. But far more substantive details already in record. @bmaz
3hreplyretweetfavorite
emptywheel @MonaHol Not in the least surprising. Many of my 50+ posts on all this lay that out. Clarke testified to same. @bmaz
3hreplyretweetfavorite
emptywheel @pwnallthethings First shot at Awlaki may have been parts of DOD going rogue, but generally agree. @normative @BradMossEsq
3hreplyretweetfavorite
emptywheel @pwnallthethings That said, on both torture and Awlaki killing, case is strong POTUS did not comply w/Findings reqt @normative @BradMossEsq
3hreplyretweetfavorite
emptywheel @pwnallthethings Actually think Findings like system is minimal change that should have come fr Snowden's leaks. @normative @BradMossEsq
3hreplyretweetfavorite
emptywheel @pwnallthethings My related take: http://t.co/6iv5GLytTM That said, EO 12333 spying not done under Findings @normative @BradMossEsq
3hreplyretweetfavorite
April 2013
S M T W T F S
« Mar   May »
 123456
78910111213
14151617181920
21222324252627
282930