• Home
  • About

A Runner's Story

A Runner's Story

Tag Archives: ethical hack

Deterrence

15 Thursday Jan 2015

Posted by Ed Mahoney in cyber war

≈ 3 Comments

Tags

black ice, Burning Chrome, centcom hack, ethical hack, Neuromancer, sony hack

keyboard grenadeDoesn’t it just seem obvious that at some point, to protect our digital selves, we’ll have to fight back?  Firewalls and anti virus software are like fences – merely obstacles.  Leaving the porch light on and locking your door is no doubt wise.  Thieves target easy prey.  You don’t have to out run the bear, just your buddy.  The metaphors advising essential layers of protection are endless, but by now everyone should understand that absolutely no one is entirely safe from online intrusions.  Lest we all agree to simply run around naked, data privacy requires more than protection; we need to increase the risk/reward ratio of cyber attacks with a strong deterrent.

We’re building a fence along our border with Mexico – which is to say that’s a problem we don’t really care to see fixed.  Where American lives and real money are on the line, we deter attack with our armed forces.  The best defense is a good offense.  Cyber theft is starting to become real money.  It’s one thing for a credit card company to build fraud into its business model.  Not every business can do that.  The potential losses aren’t always known.  The information age is rapidly approaching its kairotic moment.  If we can’t control technology, then we might as well reboot ourselves back to the dark ages before cyber extremism launches us into the stone age.

I’m proposing the ability to respond to hacking efforts with intrusion countermeasures electronics.  ICE.  There are other terms for this but I like the literary reference from Tom Maddox and William Gibson.  The concept is an active defense that strikes back.  Currently there is very little risk to deter internationally remote cyber criminals.  This proposal is not new, the concept has been around since Burning Chrome and Neuromancer.  Black ICE takes it further by suggesting the response actually include deadly force.  Assuming that’s even possible.  So why are we not enacting an idea that’s older than the Internet?

Consider what we learned recently from the Sony attack, ostensibly by North Korea.  I have to use the adjective ostensibly, not because the FBI has yet to make their proof public, but because other agencies believe they have evidence demonstrating this is an inside job.  Point being, certainty is difficult in proving the source of cyber attacks.  So much can be spoofed.  IP addresses.  So much more is circumstantial and inferred.  This type of malware was used by this cyber warrior previously against that target.  The more sophisticated the attacker, the more likely they have obscured their tracks if not framed another source.  The level of certainty required in a U.S. civil court of law is virtually impossible.

Given that, you can be certain responding with a counter attack is illegal.  And your response will leave undeniable evidence.  No corporate legal team will approve counter attacks.  They would be complicit.  There is also the risk of escalating the conflict.  I don’t subscribe to that fear personally, but it doesn’t matter.  No legal entity can perform counter attacks.  It’s simply not allowed.  Only governments can respond with intrusion countermeasures.  Israel is transparent about this.  You can only hope the U.S. does it.  Deterrence requires we do so in a public and comprehensive manner.

Perhaps the government could outsource this to corporate ethical hackers like they do some military security now.  Regardless, I think this cost should come out of our defense budget.  I haven’t put any thought into how we should triage attacks.  Should our response to an attack against a small startup be as severe as that of a Fortune 500 company?  Should we discriminate at all.  Is our first level of response a denial of service attack or do we erase attacker hard drives?

The technology for countermeasures will be interesting.  The solution might require a government layer of software on every citizen’s computing device, much as we run anti virus now.  That’s a scary thought.  Worse than NSA snooping would be having to call the gov’t helpdesk when a software patch crashes your machine.  That Obama is responding with Executive orders now to the Sony hack tells me what direction we’re headed.  Could be years given the pace of political policy-making.  Could be months given the pace of technological progress.

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Reddit (Opens in new window) Reddit
  • More
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to email a link to a friend (Opens in new window) Email
  • Click to print (Opens in new window) Print
Like Loading...

Cyber War – Ethical Hacking

17 Sunday Jan 2010

Posted by Ed Mahoney in cyber war

≈ Leave a comment

Tags

black ice, china, ethical hack, google, quarantine

Tyler was in his essence as he walked his Unit and Console Sergeant through his hack.  “The SecIntel from this new dashboard is much richer than we expected.  It includes the results of the Chinese vulnerability scans.  So we know the vulnerable IPs that North Korea will exploit.  We simply exploit them first and set our trap.  The beauty here is these targets won’t ever have their data exfiltrated because the first step of our hack – the code I’ve already developed – is to redirect the hacks to our virtual environment where we can control everything.  I’m calling this Project Quarantine.  Sergeant, please sign me up for a medal.”

The Console Sergeant didn’t have much patience for over-confident software developers.  “This is good work soldier, but let’s be clear.  There will not be any medals because Cyber Command not a legitimate member of the Armed Forces.  Remember in high school or college, where you have sanctioned sports teams like basketball and football?  And then you have some new sport trying to gain awareness, and they call it a club?  Well that’s us, we’re a club.  Our funding comes entirely from Google – a freakin corporation!  We ethically hack their foreign government adversaries to keep them out of the courtroom.  Which leads me to my point.  Google isn’t paying us to quarantine.  They want these hackers dead!  So Project Quarantine is a nice start but you better think of it more as a killing field.  Now get to work on some black ice!”

40.137598 -105.107652

Share this:

  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on X (Opens in new window) X
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Reddit (Opens in new window) Reddit
  • More
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to email a link to a friend (Opens in new window) Email
  • Click to print (Opens in new window) Print
Like Loading...

Ed Mahoney is a runner, author, and cybersecurity product director who writes about endurance, travel, and life’s small ironies. His blog A Runner’s Story captures the rhythm between motion, meaning, and memory.

Search this blog

  • Boulder Marathon
  • Britt&Eric
  • Colorado Trail
  • Covid-19
  • covid-noir
  • cyber war
  • Ellie Rose
  • Geek Horror
  • Marathons
  • Margot
  • Medical Files
  • Novel
  • Other Stories
  • ReBlog
  • Running
  • Snowboard
  • Snowshoe
  • Storytelling
  • training plan
  • Ultra
  • Victoria BC

Buy Full Spectrum Cyberwar at Amazon

Buy Cyber War I at Amazon

Buy on Amazon India for ₹99

Buy on Amazon U.K. for £2.27

English Edition on Amazon Germany

Buy on Amazon Brazil for R$11.29

Archives

Blog Stats

  • 151,218 hits

Girlfriend Cult

Recent Comments

Ed Mahoney's avatarEd Mahoney on On Racing
georgeschools's avatargeorgeschools on On Racing
Terry Collier's avatarTerry Collier on Running in Oxygen Debt is…
Terry Collier's avatarTerry Collier on Safe and Sound
Terry Collier's avatarTerry Collier on Castlewood Canyon

Recent Posts

  • On Racing December 7, 2025
  • Running in Oxygen Debt is Racing December 6, 2025
  • My Thanksgiving November 28, 2025
  • Safe and Sound November 2, 2025
  • Castlewood Canyon October 18, 2025
  • Victoria with Friends October 12, 2025
  • September September 16, 2025
  • Senior Pass August 23, 2025
  • First Run After August 9, 2025
  • Boulder Rez Marathon August 2, 2025
  • I Hope I break 5 July 26, 2025
  • Margot’s Saturday Adventures July 20, 2025
  • The Flower Run June 29, 2025
  • The Summer Strength Plan May 29, 2025
  • Running in the Clouds May 26, 2025
  • Just a little 10K May 18, 2025
  • Mother’s Day Run May 12, 2025
  • Colorado Marathon 2025 May 5, 2025
  • Marathon Prep April 27, 2025
  • My Face Tells the Story April 6, 2025
  • Dinner Stories March 16, 2025
  • Running is Joy March 1, 2025
  • Austin Marathon Photos, Period! February 22, 2025
  • Austin Marathon 2025 February 16, 2025
  • Next up, ATX February 8, 2025
  • On Writing and Generative AI February 3, 2025
  • Bushwhacking Bandera January 17, 2025
  • Not Bandera January 10, 2025
  • Trail Spirits January 3, 2025
  • Sixty-Two at Sixty-Two December 30, 2024
  • Mud, Ice & Snow November 30, 2024
  • Winter is Slipping in November 24, 2024
  • Around the Res November 24, 2024
  • The Boulder Res and Back November 9, 2024
  • Strength November 3, 2024
  • LMNT October 20, 2024
  • In Training October 13, 2024
  • Boulder Marathon 2024 October 5, 2024
  • Pre-Race Jitters September 28, 2024
  • Fall Racing Season September 22, 2024
  • Rooftop Sunset September 14, 2024
  • Mile Zero September 8, 2024
  • Dallas Road Waterfront September 6, 2024
  • The Boulderthon Fueling Plan August 30, 2024
  • Struts August 25, 2024
  • Return to Peaceful Valley August 18, 2024
  • It’s Time to Up the Miles August 11, 2024
  • On the Track August 4, 2024
  • My Racin’ Heart August 3, 2024
  • Whoop De Doo July 28, 2024

Colorado=Security

Goodreads

Top Posts & Pages

  • Chautauqua
  • The Surge
  • Going Dark

Top Clicks

  • None

RSS Feed

  • RSS - Posts
  • RSS - Comments

Blog at WordPress.com.

  • Subscribe Subscribed
    • A Runner's Story
    • Join 257 other subscribers
    • Already have a WordPress.com account? Log in now.
    • A Runner's Story
    • Subscribe Subscribed
    • Sign up
    • Log in
    • Report this content
    • View site in Reader
    • Manage subscriptions
    • Collapse this bar
 

Loading Comments...
 

    %d