On CBS MoneyWatch: 6 things NOT to do on Twitter, Facebook
BNET Business Network:
BNET
TechRepublic
ZDNet

September 12th, 2008

Hackers deface LHC site, came close to turning off particle detector

Posted by Richard Koman @ September 12, 2008 @ 8:35 AM

Categories: International, Science, Security

Tags: CERN, Hacker, Content Management System, Hacking, Content Management, Security, Enterprise Software, Software, Richard Koman

Is it now cyberwar over atom-smashing? A team of Greek hackers calling themselvses Greek Security Team has penetrated the Large Hadron Collider and defaced a public website. No real damage done, but the hackers got perilously close. The hackers attacked the Compact Muon Solenoid Experiment, or CMS. The Guardian reports:

Scientists working at Cern, the organisation that runs the vast smasher, were worried about what the hackers could do because they were “one step away” from the computer control system of one of the huge detectors of the machine, a vast magnet that weighs 12,500 tons, measuring around 21 metres in length and 15 metres wide/high.

If they had hacked into a second computer network, they could have turned off parts of the vast detector and, said the insider, “it is hard enough to make these things work if no one is messing with it.”

Fortunately, only one file was damaged but one of the scientists firing off emails as the CMS team fought off the hackers said it was a “scary experience”.


Check out ZDNet’s other coverage on the Collider:


The hackers breached the CMSMON system, which monitors the CMS software system. CMS takes vast amounts of data during collisions. About CERN’s security apparatus:

Cern relies on a ‘defence-in-depth’ strategy, separating control networks and using firewalls and complex passwords, to protect its control systems from malicious software, such as denial-of-service attacks, botnets and zombie machines, which can strike with a synchronised attack from hundreds of machines around the world.

However, there have been growing concerns about security as remote or wireless access, notebooks and USB sticks offer new possibilities for a virus or worms to enter the network, not to mention hackers and terrorists who might be interested in targeting computers to shutdown the system.

Update: Received the following comments from Andrew Storms, director of security ops at nCircle Network Security:

It’s always difficult for outsiders to understand what may have really
happened without the first-hand technical recount of the events. However,
two things we can always count on — 1) the higher value targets will
receive more attention from hackers 2) the more sophisticated hackers won’t
be knocking on the front door.

If its true that the access vector was a Fermilab worker had their access
information compromised, then this points to the higher level of
sophistication of the hackers. They knew that the front door would be
locked, so they probably targeted a trusted individual who would have access
to the LHC networks.

Its important to note that the compromise probably began with a human. We
are more than often the fault for most system compromises. Hackers know
this and have actively been targeting people for years now, with the
understanding that they may unknowingly give the attackers access to what
they seek.

Even those with PHDs and deep understanding of higher level mathematics and
physics are prone and susceptible to computer and information security
intrusions.


  • Talkback
  • Most Recent of 96 Talkback(s)
Then
What is it? (Read the rest)
Posted by: AzuMao Posted on: 09/18/08 You are currently: a Guest | | Terms of Use
Hackers  moondowner | 09/12/08
Re  ghost_ghost | 09/16/08
That's all we need  nabisho | 09/12/08
RE: Hackers deface LHC site, came close to turning off particle detector  drandle@... | 09/12/08
well,  ican'tbelieveihavetoregisterforthisstupidsite | 09/13/08
and you know what they use how?  tikigawd | 09/15/08
total fallacy  2WiReD | 09/15/08
yup  shadfurman | 09/17/08
only an idiot would bellieve that.  rbslack@... | 09/15/08
"idiot"  2WiReD | 09/15/08
ID-10-T...! Indeed...  Wolfie2K3 | 09/16/08
Idiot  AzuMao | 09/15/08
uhhuh...  shadfurman | 09/17/08
Yes  AzuMao | 09/17/08
Re  ghost_ghost | 09/16/08
Exactly  AzuMao | 09/16/08
Why it's online...  Wolfie2K3 | 09/16/08
Because...  ghost_ghost | 09/16/08
Convenience Shouldn't Trump Security  martyh@... | 09/16/08
or maybe  shadfurman | 09/17/08
RE: Hackers deface LHC site, came close to turning off particle detector  drandle@... | 09/12/08
"Know before whom you stand."  Rick_R | 09/12/08
Of course NOT...  Wolfie2K3 | 09/16/08
RE: Hackers deface LHC site, came close to turning off particle detector  dreyercito | 09/12/08
RE: Hackers deface LHC site, came close to turning off particle detector  reverseswing | 09/12/08
Um...why is it on the public net to begin with??  techboy_z | 09/12/08
Exactly, some people trust their security...  x21x | 09/12/08
lol  shadfurman | 09/17/08
Why is it on the Net  ynp2009 | 09/12/08
Well...  johnay | 09/12/08
It should be on Internet-2  magcomment | 09/12/08
Internet2 is only in the U.S.  seanferd | 09/13/08
Same reason the U.S. DOD is?  seanferd | 09/13/08
Why it's on the net...  Wolfie2K3 | 09/16/08
why is it on the public net  Me_too | 09/15/08
Contact  ZStoner | 09/12/08
Hackers: do something worthwhile next time  Don Collins | 09/12/08
Why USA?  x21x | 09/12/08
They like the practice. wink  seanferd | 09/13/08
um...  shadfurman | 09/17/08
That's What You Get For Using Vista  itanalyst2@... | 09/12/08
Thanks for being the one to prove my point.  NonZealot | 09/12/08
Wrong as usual...  GoPower | 09/12/08
I Was Just Joking, But.....  itanalyst2@... | 09/12/08
What a waste  rbslack@... | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  T-Rexx | 09/12/08
did they?  BlueBerry Pick'n | 09/12/08
Can someone please teach me?  kcredden2 | 09/12/08
Wasn't it for grid computing?  nDuDut | 09/12/08
I believe so.  TechinMN | 09/15/08
Read the article.  codeguy007 | 09/15/08
Go go Tom Cruise  2WiReD | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  waldenasta | 09/13/08
What a stupid article  Takalok | 09/13/08
It's called Social Engineering  codeguy007 | 09/15/08
I agree:  blackjack861@... | 09/15/08
Please, with the "hackers" already  seanferd | 09/13/08
dd  timx1 | 09/14/08
RE: Hackers - Those at LHC - get it together or shut it down!  monkeyfuel04 | 09/15/08
And it wouldn't be hard, why?  TechinMN | 09/15/08
Umm....  Spiritusindomit@... | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  codeguy007 | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  seaczar | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  TheMostToysWins | 09/15/08
I'm glad  Li1t | 09/15/08
Okay...  HypnoToad | 09/15/08
Public Wed does not equal Collider Computer  Narg | 09/15/08
In what way are they "hackers"?  AzuMao | 09/15/08
Hackers  Boatswas | 09/15/08
Oh  AzuMao | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  rbslack@... | 09/15/08
Web Site to collider control system?  Dr_Zinj | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  Silex | 09/15/08
so the final understanding is...?  2WiReD | 09/15/08
.  2WiReD | 09/15/08
smashing protons might help bring proton replication into view  evolivid | 09/15/08
Quarks  phunnibone | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  phunnibone | 09/15/08
Ironic  djchandler | 09/15/08
Wrong  AzuMao | 09/15/08
And...  ghost_ghost | 09/16/08
Of..  AzuMao | 09/16/08
Re  ghost_ghost | 09/18/08
Then  AzuMao | 09/18/08
Translation  ghost_ghost | 09/16/08
Right  melekali | 09/15/08
I wouldn't go that far  codeguy007 | 09/16/08
RE: Hackers deface LHC site, came close to turning off particle detector  rayman125 | 09/15/08
Crackers, NOT hackers  Gradius2 | 09/15/08
RE: If these society losers:  blackjack861@... | 09/15/08
someone from Fermilab's Tevatron had their access details compromised  tracy anne | 09/15/08
I knew it  AzuMao | 09/15/08
RE: Hackers deface LHC site, came close to turning off particle detector  AzuMao | 09/16/08
The First Important Question  FateJHedgehog@... | 09/16/08
RE: Hackers deface LHC site, came close to turning off particle detector  mikez@... | 09/16/08
RE: Hackers deface LHC site, came close to turning off particle detector  michaelstn@... | 09/16/08

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

Enterprise Applications

  • Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
  • New Online Dashboard
  • Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline