search technology reviews, news, features, group tests
Popular Searches:   windows , asus ,
 |  Register
 |  Newsletters  | 
Sitemap  |  RSS
RSS
Monday November 9, 2009 10:43 AM AEST
Skip Navigation LinksPC Authority > News > US government security data compromised
US government security data compromised
NEWS

US government security data compromised

by Robert Blincoe  on Jul 29, 2008
Tags: security
DNS slip-up opens up CIA, FBI and DoD information.
The security of data held by the CIA, the FBI and the US Department of Defense was compromised earlier this year after a partner agency allowed zone transfer access of its Domain Name Services.

Professor John Walker, managing director of forensics consultancy Secure-Bastion, revealed the security blunder during the International Crime Science conference in London last week.

Professor Walker had been testing DNS environments as part of his academic research.

"In one case an organisation in the US, working with some government agencies, allowed me to get into their systems to see their servers named for their clients. Their servers were called 'CIA', 'FBI' and 'DoD'," he said.

Professor Walker confirmed that these names referred to the actual US law enforcement and defence agencies.

"The DNS is a logical map of all the assets of a company. If you can take the logical map of the assets out (IP addresses, system names) you've got an awful lot of intelligence to work on," he said.

"And you can work quietly because you no longer have to go to the organisation to get the data because it's sitting on your PC."

When Professor Walker reported the security flaw, the organisation said " Thank God you've found it" and closed it down. "I didn't go down any further because I valued my liberty," he said.

"In my work I get the pleasure of seeing other people's systems. I invariably walk away not believing what I've seen. It's not that the criminals are so clever, but that we're so stupid."

The International Crime Science Conference was organised by the Centre for Security and Crime Science at University College London.

Copyright © 2009 v3.co.uk
Email a Friend Email this
Print Page Print this
Tweet This Tweet this
Feedback Send us your tips


Ads by Google

Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Login or register to submit a comment.
 

Top Stories

World's thinnest: Dell Adamo XPS officially announced
Dell has outed the super-skinny Adamo XPS, complete with specs. But can it hold its own against Apple's almighty MacBook Air?
 
Mandriva Linux 2010.0 is out
Madriva announced the release of Mandriva Linux 2010.0 this morning. Codenamed "Amelie", Mandriva 2010.0 is this year's autumn release of the popular Red Hat based Linux distribution
 
What ever happened to the....VR Helmet?
If there was ever an example of a great concept inadequately executed, it was the VR helmet. Hollywood might of loved it - but everyday punters saw otherwise.
 


 
LogMeIn
 
 
HP
 
 
Amazing Dell Coupons now available