Audit: Air traffic systems vulnerable to attack
May 6, 2009 By LOLITA C. BALDOR , Associated Press Writer(AP) -- The nation's air traffic control systems are vulnerable to cyber attacks, and support systems have been breached in recent months allowing hackers access to personnel records and network servers, according to a new report.
The audit done by the Department of Transportation's inspector general concluded that although most of the attacks disrupted only support systems, they could spread to the operational systems that control communications, surveillance and flight information used to separate aircraft.
The report noted several recent cyber attacks, including a February incident when hackers gained access to personal information on about 48,000 current and former FAA employees, and an attack in 2008 when hackers took control of some FAA network servers.
Auditors said the Federal Aviation Administration is not able to adequately detect potential cyber security attacks, and it must better secure its systems against hackers and other intruders.
"In our opinion, unless effective action is taken quickly, it is likely to be a matter of when, not if, ATC (air traffic control) systems encounter attacks that do serious harm to ATC operations," the auditors said.
In response to the findings, FAA officials stressed that the support systems and traffic control networks are physically isolated from each other.
"It's not possible to use the administrative and mission support network to access the air traffic control network," said FAA spokeswoman Laura Brown.
But the FAA agreed that more aggressive action should be taken to secure the networks and fix high-risk vulnerabilities.
According to the report, the FAA received 800 cyber incident alerts during the fiscal year that ended Sept. 30, 2008, and more than 150 were not resolved before the year finished. Fifty of those, the auditors said, had been open for more than three months, "including critical incidents in which hackers may have taken over control" of some computers.
Officials tested Internet-based systems that are used to provide information to the public such as communications frequencies for pilots, as well as internal FAA computer systems. The tests found nearly 4,000 "vulnerabilities," including 763 viewed as "high risk." The vulnerabilities including weak passwords, unprotected file folders, and other software problems.
The weaknesses could allow hackers or internal FAA workers to gain access to air traffic systems, and possibly compromise computers there or infect them with malicious codes or viruses, the audit warned.
Such software gaps, the report said, are "especially worrisome at a time when the nation is facing increased threats from sophisticated nation-state-sponsored cyber attacks."
In its response top the audit, the FAA said corrective actions are already being taken, and that others should be in place in the coming months.
The audit is the latest in a series of reports and warnings about weaknesses in the U.S. government's computer networks, including revelations that spies have hacked into the U.S. electric grid and that a military aircraft program was breached, although classified information was not compromised.
The Obama administration, meanwhile, is wrangling over a recently completed review of the nation's cybersecurity, which is expected to detail how the U.S. should manage and secure its networks.
---
On the Net:
FAA: http://www.faa.gov/
©2009 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.
-
Researchers create next-generation software to identify complex cyber network attacks
Mar 17, 2008 |
not rated yet |
0
-
FAA telecom upgrade reaches IP milestone
Nov 30, 2005 |
not rated yet |
0
-
Spies breach Pentagon fighter-jet project: report
Apr 21, 2009 |
not rated yet |
0
-
SKorea and US forge deal to fight cyber attacks
May 04, 2009 |
not rated yet |
0
-
Wanted: Computer hackers... to help government
Apr 19, 2009 |
not rated yet |
0
-
Engineers build first sub-10-nm carbon nanotube transistor
Feb 01, 2012 |
4.9 / 5 (33) |
30
-
Something old, something new: Evolution and the structural divergence of duplicate genes
Jan 31, 2012 |
4.6 / 5 (7) |
1
-
The hidden nanoworld of ice crystals: Revealing the dynamic behavior of quasi-liquid layers
Jan 30, 2012 |
5 / 5 (5) |
1
-
Stock market network reveals investor clustering
Jan 27, 2012 |
3.9 / 5 (23) |
8
-
Of microchemistry and molecules: Electronic microfluidic device synthesizes biocompatible probes
Jan 26, 2012 |
5 / 5 (2) |
0
-
How to tilt a object
10 hours ago
-
How to calculate total compressibility in liquid porous solid system
15 hours ago
-
Need help reading 3-D
Feb 11, 2012
-
A way to send and receive wireless data
Feb 11, 2012
-
Calling function with no input argument
Feb 10, 2012
-
Force free body diagram problem on gym equipment
Feb 10, 2012
- More from Physics Forums - General Engineering
More news stories
Chinese city seizes Apple iPads in name dispute
(AP) -- Authorities have seized Apple iPads from retailers in a city in northern China due to a dispute with a domestic company that says it owns the iPad name, an official said Monday. The Chinese company said it is asking ...
23 minutes ago |
not rated yet |
0
Microsoft India retail site down after 'cyber attack'
Microsoft India's retail website was down on Monday after reportedly being hacked by a Chinese group calling itself Evil Shadow Team.
21 minutes ago |
not rated yet |
0
Hacker claims porn site users compromised
A hacker claims to have compromised the personal information of more than 350,000 users after breaking into a disused website operated by pornography provider Brazzers.
1 hour ago |
5 / 5 (1) |
0
Google might launch Drive for cloud storage soon
(PhysOrg.com) -- Google's next big move, according to the Wall Street Journal, is a cloud storage service called Drive. Hardly first to the plate, Google is simply catching up to introducing its cloud reposi ...
AT&T customers surprised by 'unlimited data' limit
(AP) -- Mike Trang likes to use his iPhone 4 as a GPS device, helping him get around in his job. Now and then, his younger cousins get ahold of it, and play some YouTube videos and games.
2 hours ago |
5 / 5 (2) |
0
Ordered planar polymers created for the first time
(PhysOrg.com) -- Scientists under the direction of ETH Zurich have created a minor sensation in synthetic chemistry. They succeeded for the first time in producing regularly ordered planar polymers that form ...
New European rocket lifts off on maiden flight
A new lightweight rocket, Vega, lifted off from Europe's space base Monday carrying nine satellites on its inaugural flight, mission control said.
Rapunzel, Leonardo and the physics of the ponytail
(PhysOrg.com) -- New research provides the first mathematical understanding of the shape of a ponytail and could have implications for the textile industry, computer animation and personal care products.
Scientists discover molecular secrets of 2,000-year-old Chinese herbal remedy
For roughly two thousand years, Chinese herbalists have treated Malaria using a root extract, commonly known as Chang Shan, from a type of hydrangea that grows in Tibet and Nepal. More recent studies suggest that halofuginone, ...
Climate change causes harmful algal blooms in North Atlantic: study
Warming oceans and increases in windiness could be causing of an abundance of harmful algal blooms in the North Atlantic Ocean and North Sea, according to new research.
Cognitive impairment in older adults often unrecognized in the primary care setting
A new study published in the Journal of the American Geriatrics Society reveals that brief cognitive screenings combined with offering further evaluation increased new diagnoses of cognitive impairment in older veterans two to ...