Posts

Showing posts from October 7, 2012

Book review: Zero day - A brilliant novel

Image
Zero Day by Mark Russinovich is a brilliant novel about why we should fear an online attack by a rogue non-state-sponsored terrorist before any other forms of spectacular attacks. I didn't know that Boing 787 was fully fly by wire , and that medication in hospitals were controlled by networked computers. While attacking that type of software would require specialized knowledge on internals of those systems, it may not be as far fetched as most of us assume it to be. The fact that zero day exploits are available for sale is also not a secret anymore. There are organizations out there who are willing to pay big bucks for those who prefer money than fame. Why do you think pwn2own doesn't require exploits to be fully docume nted anymore ? The proliferation of networked computers is good idea, but our inability to patch them on time is a recipe for disaster. I've worked long enough in IT to know that not all patches are applied immediately to all systems as soon as they are

Book review: Zero day - A brilliant novel

Image
Zero Day by Mark Russinovich is a brilliant novel about why we should fear an online attack by a rogue non-state-sponsored terrorist before any other forms of spectacular attacks. I didn't know that Boing 787 was fully fly by wire , and that medication in hospitals were controlled by networked computers. While attacking that type of software would require specialized knowledge on internals of those systems, it may not be as far fetched as most of us assume it to be. The fact that zero day exploits are available for sale is also not a secret anymore. There are organizations out there who are willing to pay big bucks for those who prefer money than fame. Why do you think pwn2own doesn't require exploits to be fully docume nted anymore ? The proliferation of networked computers is good idea, but our inability to patch them on time is a recipe for disaster. I've worked long enough in IT to know that not all patches are applied immediately to all systems as soon as they are