March 15, 2010

Tech apocalypse: Five doomsday scenarios for IT

Power grid hacks, massive DNS rerouting, solar flares -- end-times for IT may be more likely than you think

Technology drives just about everything we do, and not just at our jobs. From banks to hospitals to the systems that keep the juice flowing to our homes, we are almost entirely dependent on tech. More and more of these systems are interconnected, and many of them are vulnerable. We see it almost every day.

But what if instead of simply a denial-of-service attack against select Websites, the entire Internet suddenly stopped working -- or for that matter, Google could not be reached. What if instead of a mere data breach, our financial institutions were attacked by a weapon that could instantly neutralize all electronic transactions? Or if hackers wormed their way into the systems that control the power grid?

[ Think you're prepared for every IT contingency? Take the InfoWorld worst-case-scenario quiz to find out. | Every bit of your virtual existence is being monitored -- get scared accordingly with our Top 10 reasons to be paranoid. ]

Heck, what if God decided she'd had enough of us and decided to send a solar storm our way?

Off the Record submissions

If you think these things can't happen, think again. Some already have occurred on a smaller scale. But we thought it might be fun to turn up the volume and see what might happen -- how likely a "tech doomsday" scenario might be, how long it would take us to recover, and how we might prevent it from coming to be.

What could possibly go wrong? Try these scenarios for starters.

Tech doomsday scenario No. 1: America goes dark
News flash: A coordinated hack attack on our nation's power grid caused massive blackouts across the United States, leaving more than 300 million people without electricity for days.

The Supervisory Control and Data Acquisition (SCADA) systems that run U.S. power plants were built some 40 years ago, when the Internet was just a handful of university computers connected via 300-baud modems.

"Back then every power grid system in the world was considered its own island," says Robert Sills, CEO of RealTime Interactive Systems, which provides security solutions for industrial control applications. "There wasn't technology available to connect them. Now there is."

And the downside of all this connectivity is that once a local grid gets overloaded, others connected to it may tumble like dominoes. That's what happened in August 2003, when overgrown trees and human error triggered a power outage at Ohio's FirstEnergy. That failure caused a cascade that ultimately left 55 million people in the United States and Canada without power.

It doesn't take an act of God or Homer Simpson at the controls to cause a cascading power failure. It could be a rogue employee seeking revenge -- like the software engineer who hacked into an Australian water treatment plant's SCADA system in 1991, releasing 264,000 gallons of raw sewage.

Or it could be an external attacker who gains entry into a SCADA system's maintenance ports via war-dialing, and then uses social-engineering or spear-phishing attacks to gain entry into the network.

Sills says the vast majority of power substations are vulnerable to such an attack. From there, the attacker simply needs to change a few settings and let the grid's automated fail-safe systems do the rest.

"Right now it's a system that's pretty wide open," says Sills. "There are any number of ways someone could make unauthorized transactions via routine maintenance. You could create an outage simply by pushing the wrong key."

Close

On Twitter now

Misadventures

Powered by Twitter

On Twitter now

additional resources
White Paper - 7 Technologies Behind Ultimate Storage Efficiency

White Paper

7 Technologies Behind Ultimate Storage Efficiency

Get the most out of the storage you already own. Download this whitepaper today and examine 7 key technologies behind maximizing your storage efficiency.

Download now »
Insider Threat Deep Dive Report

White Paper

Insider Threat Deep Dive Report

Stop unscrupulous insiders. A clever criminal can lull the boss into believing nothing is amiss. Systems designed to monitor the network for patterns of criminal or destructive behavior are much harder to fool. Learn how to put the right countermeasures in place and vastly reduce the threat posed by insiders.

Download now »
White Paper - A Powerful Platform for Virtualization

White Paper

A Powerful Platform for Virtualization

Examine the 5 unique requirements that virtualization imposes on hardware, and discover how the next generation of HP's ProLiant server line can deliver virtualized, efficient data centers, rapid ROI and lower operational expenses.

Download now »
White Paper - Backup Best Practices for HP EVA and VMware

White Paper

Backup Best Practices for HP EVA and VMware

Address the backup and restore challenges created by virtualized server environments by following these technical recommendations. Learn how VMware Consolidated Backup in conjunction with HP Data Protector can realize a VMware ESX backup that surpasses the 1 TB/h performance threshold, while minimizing storage resources overhead.

Download now »
DaveN 15-Mar-10 10:39am
I'm usually skeptical of prophecies of doom, particularly those from people whose companies sell solutions designed to protect against them.
prelude 15-Mar-10 11:58am
I'm usually skeptical of anyone who would refer to God as she so I did not read past the first page.
Trencher93 15-Mar-10 12:03pm
1 reply
You forgot one: What if there was a bug that would suddenly stop all computers from working on a certain date? We'd be absolutely doomed. What shocks me is that anyone who lived through Y2K would pay any attention to doomsday scenarios. If Google quits working, we'd use another search engine. If the Internet quits working, I remember the 1980s went along fine without it. If banks are suddenly zapped on a large scale, I hope they take out my mortgage and erase all records of it. And, I am glad I have paper books instead of digital ones for when the DRM servers go offline.

Today's Headlines: First Look Newsletter

Find out what will be news for the day, with our first-thing-in-the-morning briefing.

©1994-2010 Infoworld, Inc.