Share

Related Links

  • Computer Weekly
  • Elsevier Ltd is not responsible for the content of external websites.

Related Stories

  • Interview: Charles Palmer
    No shortage of attention has been paid to the topic of cybersecurity as of late, especially with respect to the role of government. All talk aside, what is being done to address the threats, and how real are they? Drew Amorosi sits down with Charles Palmer, the director of IBM’s Institute for Advanced Security, and learned that although the US may have cybersecurity challenges, the first step toward recovery is admitting that we have a problem
  • Cybersecurity skills shortage leaves US military systems at risk
    US industry, government and military computer systems are at risk of attack, analysts warn.
  • Ex-NSA CIO/CTO says Eastern Europe is developing its IT security technology more efficiently
    Eastern Europe is catching up to the West in terms of IT security awareness and, as a result, is starting to develop some interesting solutions to the problem of cybersecurity, according to Prescott Winter, the former CIO/CTO with the National Security Agency.
  • Grading Obama on Cybersecurity
    Early in his term, President Obama promised to address the issue of cybersecurity by continuing and even expanding upon the efforts of the previous administration. Lauren Moraski surveys experts in the field, providing an assessment of the job the new president is doing so far to address this issue
  • Cyberspace: The Fourth Arm of the Military?
    The Pentagon recently declared that its US Cyber Command unit was fully operational. Danny Bradbury finds out exactly what that means

Top 5 Stories

News

Infected USB drive "significantly compromised" Pentagon computers

26 August 2010

Department of Defense officials have admitted for the first time that malware on a USB stick "significantly compromised" classified Pentagon computers in 2008.

Writing in Foreign Affairs, deputy secretary of defense William Lynn said the recently declassified attack began when an infected flash drive was put into a military laptop at a base in the Middle East.

This led to the most significant breach of US military computers ever, and served as an important wake-up call, Lynn said.

"The flash drive's malicious computer code, placed there by a foreign intelligence agency, uploaded itself onto a network run by the US Central Command. That code spread undetected on both classified and unclassified systems, establishing what amounted to a digital beachhead, from which data could be transferred to servers under foreign control," Lynn said.

He claimed more than 100 foreign intelligence organizations were trying to hack into the US military digital networks that support operations. The frequency and sophistication of attacks had "increased exponentially" over the past 10 years, he said.

"Every day, US military and civilian networks are probed thousands of times and scanned millions of times. And the 2008 intrusion was not the only successful penetration. Adversaries have acquired thousands of files from US networks and from the networks of US allies and industry partners, including weapons blueprints, operational plans, and surveillance data.

The Pentagon recognized the catastrophic threat posed by cyberwarfare, and was working with allied governments and private companies to prepare itself, Lynn said.

"An enormous amount of foundational work remains, but the US government has begun putting in place various initiatives to defend the United States in the digital age," he said.

This story was first published by Computer Weekly

This article is featured in:
Data Loss  • Malware and Hardware Security • Public Sector

 

Comment on this article

You must be registered and logged in to leave a comment about this article.