Cyber Vulnerabilities

Defending Targeted Attacks Is a Higher Bar. Focus on Prevention Alone Is Probably a Mistake

By Bryan Owen

[This is a response to Joe Weiss' question, "Who is Kidding Who about the Cyber Vulnerability of the Electric Grid?"]

It seems legit to consider propagation of undirected malware as at least partially bounded by heterogeneity. In comparison, it didn't take long for researchers to successfully develop malware that would compromise a homogenous AMI network.. To the extent technical diversity increases the cost of developing an attack, it's a good thing. Unfortunately, this isn't enough to deter adversaries. Other techniques can do more to increase the level of effort. Defending targeted attacks is a higher bar. Focus on prevention alone is probably a mistake.

Bryan Owen

Join the discussion

We welcome your thoughtful comments. Please comply with our Community rules.
All comments will display your user name.

Want to participate in the discussion?

Register for free

Log in for complete access.


No one has commented on this page yet.

RSS feed for comments on this page | RSS feed for all comments