Skip to content

Davey Winder

delivering award-winning technology journalism since 1991

  • home
  • about me
  • follow me on mastodon
  • privacy policy
  • Toggle search form

CISOs are showing up to a knife fight with a chessboard

Posted on October 28, 2016October 28, 2016 By Davey Winder

Legacy tech is still used in security-critical areas; but is this a step back for security where it’s needed most?

A report from Trend Micro ‘Leaking Beeps – Unencrypted Pager Messages in Industrial Environments’ reveals that pagers are also still used in Critical Infrastructure environments, including nuclear power plants. The communications data they transport is not encrypted though, and researchers could easily listen in. Such eavesdropping could be implemented as part of a passive intelligence gathering phase of an advanced attack. The Trend Micro researchers were able to glean diagnostics data revealing sensor values and facility related status updates revealing the SCADA devices in use for example.

Tony Rowan, solution architect director at SentinelOne points out that we need to understand that pager transmissions by their very nature “cannot be hidden and in fact should be regarded as public broadcasts.” As soon as you consider these types of communication public, its obvious that encryption is required to provide a level of privacy and a period of protection. “Looking at the pager issue in the wider context” Rowan continues “it does draw attention to the basic fact that the threat actor will search for weak and undefended pathways that will lead to their objective.”

Click here to read complete article

Analysis Tags:Analysis, CISO, legacy, Research, strategy

Post navigation

Previous Post: Healthcare IT gets old, but hackers remain nimble
Next Post: What the IT industry thinks of the UK government’s cyber security plan

Related Articles

Forget Passwords, This New Tech Is Nearly Hacker-Proof, 1Password Says Analysis
Gmail Hackers Leave Vital Clues Behind—Check These 3 Things Now Analysis
No, 1Password Has Not Just Been Hacked—Your Passwords Are Safe Analysis
New Critical Security Warning For iPhone, iPad, Watch, Mac—Attacks Underway Analysis
New Emergency Chrome Security Update After Critical iOS 16.6.1 Release Analysis
New iPhone iOS 16 Bluetooth Hack Attack—How To Stop It Analysis

Categories

Post Archive

Tags

0day Analysis Android Apple Apps breach bug bounty Business Chrome crime Cybercrime Data Protection Encryption Enterprise Google Government Hackers Hacking Health healthcare industry iOS IoT iPhone Malware Microsoft News NHS Opinion passwords Phishing Privacy ransomware Research Russia Samsung threat intelligence Twitter Update Vulnerabilites vulnerabilities Vulnerability Windows Windows 10 zero-day

Copyright © 2025 Davey Winder .

×
Cookies
We serve cookies. If you think that's ok, just click "Accept all". You can also choose what kind of cookies you want by clicking "Settings". Read our cookie policy
Settings Refuse all Accept all
Cookies
Choose what kind of cookies to accept. Your choice will be saved for one year. Read our cookie policy
  • Necessary
    These cookies are not optional. They are needed for the website to function.
  • Statistics
    In order for us to improve the website's functionality and structure, based on how the website is used.
  • Experience
    In order for our website to perform as well as possible during your visit. If you refuse these cookies, some functionality will disappear from the website.
  • Marketing
    By sharing your interests and behavior as you visit our site, you increase the chance of seeing personalized content and offers.
Save Refuse all Accept all
GDPR Cookie Policy