HOME  |  NEWS  |  BLOGS  |  MESSAGES  |  FEATURES  |  VIDEOS  |  WEBINARS  |  INDUSTRIES  |  FOCUS ON FUNDAMENTALS
  |  REGISTER  |  LOGIN  |  HELP
Comments
You must login to participate in this chat. Please login.

Heard about Stuxnet and it's attack on Iran's Nuclear plants.

Yes, I believe there is a cyber threat to SCADA systems.

Neither IT or SCADA. In Hardware design

Catching up after a busy week @ work!

@Anatoliy - You question is covered in days 3, 4, and 5.

Blogger

How threat can be controlled, minimized or be predicted?

Yes, threat is natural part of development for IT

See everyone tomorrow!

Blogger

Ok everyone. If there are no more questions, I am going to sign off for today and see everyone back here tomorrow!

Blogger

Also, many of the disclosed vulnerabilities and exploits regarding ICS/SCADA are vetted acccess only

Blogger

@yolk55 - There were many more than that. Hundreds of vulnerabilities reported, many of them with exploits or at least POC (proof of concept) code

Blogger
Review of CEC course material on embedded sys security may help. Got it. Thanks a million Clint!

This is a great intro to SCADA (although a bit pricy): http://www.amazon.com/Scada-Supervisory-Control-Data-Acquisition/dp/1936007096/ref=sr_1_3?ie=UTF8&qid=1387224078&sr=8-3&keywords=scada

Blogger

It looks like there was 57 reported security exploits from 2008 to mid2012

Iron

@WherleyBird - I would review information on basic network technology... and I mean basic would be fine... even Networking for Dummies :-)

As far as SCADA specific knowledge, I explain much of what you need to know in order to understand. But google or YouTube up introduction to SCADA

Blogger
Got any good resources for to review until next course that may be good supplement to this course subject for less xperienced. Please. Thanks.

until tomorrow, thanks.

Iron

Great presentation, can't wait for the rest of the week.

Iron

You also have to consider that if any of these systems are tied to safety shutoff... authentication or anything that could hinder quick access is a big nono

Blogger

@dgrinch - we are trying to push the operators into that direction. You will see throughout the week how little authentication is implemented in these systems. Very few operators today use TPM

Blogger

@dgrinch - Funny you should ask... because...

Blogger

At K-dog - the video being YouTube will be up quite some time so you can go back and view it

Blogger

Enjoyed... except for when the Youtube video caused my computer to freeze and I had to reboot.  I think I missed the best info on the threat pages.

Iron

I lioke the video description that Stuxnet = Open Source Computer Virus.

Clint, thanks for a great introduction to the subject.

Iron

? Are the "TPM"   trusted platform hardware solutions  ( such as Wave Systems) making any headway and are they at least a partial answer?

 

Iron

Roger that. Looking forward to see how the SCADA industry differ from typical IT shop, and the kind of gaps perhaps that between them. Thx again.

Iron

Someone asked: howisthestuxnetdetected?themostsignificantsymptom?

The remaining classes this week will delve into that. 

Blogger

Nice video selections, by the way.

Iron

Thanks Clint, Rich & Digi-Key

Iron

That being said... it's still a tight rope to walk. All security solutions in this industry, even the ones designed for it, must be implemented with scrutiny.

Blogger

Great intro.  Looking forward to seeing the rest.  Thank you.

@ chialee - Yes and no. We are seeing more acceptance of standard tools such as McAfee... but it wasn't always so... as these vendors wise up to the need for lack of a better phrase, they are supporting these industries and anhering to their special circumstances

Blogger

howisthestuxnetdetected?themostsignificantsymptom?

 

Thanks, Clint/Rich. Geat info.

 

Iron

@dgrinch, they'll be pretty similar. IEEE was so impressed with the quality, they want to certify

Blogger

 

Great presentation. Thank you

Iron

Good presentation. Thanks Clint.

Iron

Client, in the SCADA world, do you use standard industry security solution that typical IT shops use like McAfee, HP, etc. or you guys usesspecialized software, systems and tools?

Iron

Thank you, Clint and Rich.

Iron

Thanks guys. Interesting topic!

Iron

That was reported by DHS ICS-CERT

Blogger

Thank you Clint & Rich

Iron

Thanks Clint and Rich.

Iron

@richnass   Will  the 2014 webinars with IEEE blessing be substantially different?

 

Iron

Thanks for the very interesting lecture

Excellent presentation, looking forward to tomorrow.

Iron

Thank you Clint, Rich, and Digi-Key.

Excellent introduction.

Platinum

Thank you Clint, Thanks all.

Iron

Thnak you Clint, Rich and Digi-Key!

Iron

Could you please repeat the percentage increase in threats from 2010-2012? Thanks.

Iron

 

Stuxnet was covered extensively on Slashdot.org

Iron

there are systems, tools and software out there that can mitigate the insider threats, but it always comes back to tte PEOPLE, a harder thing to crack

Iron
Yes. I've heard of it just recently in previous CEC class on embedded sys security.

Usb is one of your most vulerable points.

Iron

Back - the video locked up my desktop and froze the whole system...

 

Iron

familiar with stuxnet

Iron

Yes, we use Siemens PLCs.

Iron

@joey_espinosajr61, The audio bar is below the class title. And download Today's Slide Deck for the PowerPoint presentation.  You can go back later for the archive.

Platinum
Got it. My first time using an ipad in webinar.

Yes, I have read about Stuxnet on the news.

Iron

Yep, Know about Stuxnet

Heard of Stuxnet on news associated with Iran nuclear program.

Iron

Yes, have heard of Stuxnet

Platinum

yes - heard of stuxnet

Iron

Have heard about it.

Iron

I have read extensively on Stuxnet.

 

The link didn't seem to be a hypelink but clicking on it in presentation mode brought up youtube.

Iron

I am online but I dont see any bar for the presentation

 

Don't know. Link isnt hyper

Ahh, thanks huntwork

Blogger

By the way, the link works best if you are presenting the PPT (F5), not editing it.

Iron

I had to cut and paste the link into my browser

Blogger

 

The treat is real to the system. I think I am too insignificant at this time

Iron

yes, mostly introduced by operators using system for none work related activities.

Iron

Well, if there isn't a credible threat right now, I'm sure someone will make it a threat if SCADA security doesn't keep ahead of them.

Iron

Can never account for all vulnerabilities - a threat always exists from being remotely compromised

Iron

Yes. Credible threats exist but of widely differing level of sophistication and motivation.

 

 

Iron

Hey tpyn: thanks for the help.

Blogger

yes. scada is just as much at risk as the internet is.

 

Iron

It is the way modern warfare is waged.

Platinum

Yes.  There are credible threats.

Do you feel that there is a credible threat to our systems?

Blogger

whipping through. Slide 6 now

Blogger

Industrial controls and design

Iron

Hello fro ROchester, NY

 

Iron

 

I am looking at SCADA for smartgrid applications

Iron

Used to be IT, now automation control engineer (industrial networks)

Iron

industrial controls

 

Iron

Mild second-hand relationship to SCADA due to SmartGRID research.

Iron
Some IT, some industrial, only basic knowledge of scada.

industrial control industries

Iron

15 years in IT. Now in Software engr/dev.

Iron

Design products for use in industrial manufacturing.

Iron

from IT industry

Platinum

industrial Controls Engineer

How many of you are from the SCADA industry, vs. academic? Something else?

Blogger

Space systems background.

Iron

IT Department at a University

Iron
No video. Slide presentation available upper right of this dialog box.

Audio just cut out. Am on Chrome.

Iron

That's cause there is no video!

 

Iron

Greetings from snowly Lawrence, MA.

@jon006 Be sure to download "Today's Slide Deck" to the right of the instructor's picture.

Platinum

Hello from Albuquerque.

Iron

@richnass Does the video involve the NSA?

Iron

Hello from Milwaukee!

Iron

Hi all -Audio is live! If you don't see the audio bar at the top of the screen, please refresh your browser. It may take a couple tries. When you see the audio bar, hit the play button. If you experience audio interruptions and are using IE, try using FF or Chrome as your browser. Many people experience issues with IE. Also, make sure your flash player is updated with the current version. Some companies block live audio streams, so if that is the case for your company, the class will be archived on this page immediately following the class and you can listen then. People don't experience any issues with the audio for the archived version.

Hi from Midland TX

Iron

Greetings from Vermont

Iron

Hi all - The audio bar will appear at the top of the screen at 2 PM Eastern. When you see the audio bar, hit the play button. If you experience audio interruptions and are using IE, try using FF or Chrome as your browser. Many people experience issues with IE. Also, make sure your flash player is updated with the current version. Some companies block live audio streams, so if that is the case for your company, the class will be archived on this page immediately following the class and you can listen then. People don't experience any issues with the audio for the archived version.

john006: download PPT

Blogger

actually, there is video. Clint will explain when he starts. New wrinkle

Blogger

Is it just audio????

Iron

 

There is no video

 

Iron

Don't forget to download the PPT from the link above

Blogger

in five minutes, you'll be able to click on the player to start the audio

Blogger

I dont see the class starting or any video.

Iron

So, how do we connect to the class?

Iron

Good Afternnon from Sunny Boston!

Iron

Greetings from snowy Buffalo, NY!

Iron

Hello from Cedar Rapids, Iowa.

Iron

It's good to know everyone is so excited.  I've downloaded slides from the link above under SPECIAL EDUCATIONAL MATERIALS.  

Iron

Hi everyone, thanks for attending. I'm excited to be your lecturer today!

Blogger

40 minutes from start time. Are you excited?

Blogger

-Be sure to follow @designnews and @DigiKeyCEC on Twitter for the latest class information. We encourage you to tweet about today's class using the hashtag #CEC.

Blogger

Good night from the foggy city of Valladolid at Spain, Europe

Iron

Hello from Hudsons Hope BC.

Iron

is it about 3:11 AM in Saudi Arabia?

it's about 1:12 EST and 9:12 AST (Alaska)

-35 degrees below zero, possibly the coldest place in the Americas

Iron

Hello from Montana. The snow is melting fast here.

Platinum

Click on the time-of-day in the lower right hand corner nd check pulldown on time zone column

Iron

How about...

The audio comes on in 53 minutes.

 

Iron

Th ausio come on in 53 minutes

 

Iron

What time it would be on air here on Saudi Arabia

 

hello from Columbus, OH

Iron

Hello from Sunny SE Lake Simcoe Ontario Canada

Iron

good afternoon, everyone

Iron

 

hello from Mishawaka

Iron

Hi all.  Snowing & 7 degF in Minneapolis today.

Iron

-Please join our Digi-Key Continuing Education Center LinkedIn Group at http://linkd.in/yoNGeY

Blogger

The streaming audio player will appear on this web page when the show starts at 2 PM EST. Note however that some companies block live audio streams. If you don't hear any audio when the show starts, try refreshing your browser. If that doesn't work, try using Firefox or Google Chrome as your browser. Some users experience audio interruptions with IE. If that doesn't work, the class will be archived immediately following our live taping.

Blogger

Slides good! Thank You &

Good Morning

Iron

Good morning from upstate New York.

Iron

Morning from Portland Oregon

Iron

So if you haven't done so yet, download the slides from the link above.

Blogger

Guess who is your moderator this week, well, Monday-Wed. Me! I'm really looking forward to this class. I saw these guys speak at an event a few months ago and decided they'd be great for the Design News audience. Really cool stuff.

Blogger

Slides are up. Download away!

Blogger

Good morning from Mobile, AL

Will video of the lectures be available afterward? Can I get the slides also? Thanks.

Iron

Sir, I could really use some slides to study my alphabet soup before the lecture.

Thank You.  X................. ................... .

Iron


Partner Zone
Latest Analysis
With Radio Shack on the ropes, let's take a memory trip through the highlights of Radio Shack products.
We Have FPGAs with On-chip MCUs, but How About MCUs with On-chip FPGAs?
Polish design firm NAS-DRA has proposed parasitic robotic drones that capture carbon dioxide from the air during the day and release it at night to plants growing on their wings.
Computer security firm Norton has partnered with clothing company Betaband on a pair of jeans that will keep your RFID-tagged credit cards and documents safe from wireless theft.
With erupting concern over police brutality, law enforcement agencies are turning to body-worn cameras to collect evidence and protect police and suspects. But how do they work? And are they even really effective?
More:Blogs|News
Design News Webinar Series
12/11/2014 8:00 a.m. California / 11:00 a.m. New York
12/10/2014 8:00 a.m. California / 11:00 a.m. New York
11/19/2014 11:00 a.m. California / 2:00 p.m. New York
11/6/2014 11:00 a.m. California / 2:00 p.m. New York
Quick Poll
The Continuing Education Center offers engineers an entirely new way to get the education they need to formulate next-generation solutions.
Dec 15 - 19, An Introduction to Web Application Security
SEMESTERS: 1  |  2  |  3  |  4  |  5  |  67


Focus on Fundamentals consists of 45-minute on-line classes that cover a host of technologies. You learn without leaving the comfort of your desk. All classes are taught by subject-matter experts and all are archived. So if you can't attend live, attend at your convenience.
Learn More   |   Login   |   Archived Classes
Twitter Feed
Design News Twitter Feed
Like Us on Facebook

Sponsored Content

Technology Marketplace

Copyright © 2014 UBM Canon, A UBM company, All rights reserved. Privacy Policy | Terms of Service