Security News > 2021 > May > Colonial Pipeline attack reminds us of our critical infrastructure's vulnerabilities

Cybersecurity expert discusses the many ways attackers could have gotten access to the Colonial Pipeline company and reminds us why the threat always looms.
TechRepublic's Karen Roby spoke with Vyas Sekar, a professor in electrical and computer engineering at Carnegie Mellon University, about the Colonial Pipeline ransomware attack by the hacker group Darkside.
Karen Roby: We're learning more about the Colonial Pipeline ransomware attack.
As you mentioned, this is a cyber-physical attack on a critical infrastructure component, which in this case was pipelines.
Which means that we know that such critical infrastructure attacks are possible.
The research, or the education focus, of CyLab is both on the education front, how do we train the workforce? How do we create the next generation of cybersecurity workers? And also on the research front, how do we give that workforce better tools from the research to proactively find new attack vectors? How to defend them inside the network? How to do recovery strategies? And so on.
News URL
Related news
- OpenAI now pays researchers $100,000 for critical vulnerabilities (source)
- Critical auth bypass bug in CrushFTP now exploited in attacks (source)
- Still Using an Older Version of iOS or iPadOS? Update Now to Patch These Critical Security Vulnerabilities (source)
- Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities Discovered (source)
- China reportedly admitted directing cyberattacks on US infrastructure (source)
- China names alleged US snoops over Asian Winter Games attacks (source)
- SAP fixes critical Netweaver flaw exploited in attacks (source)
- Most critical vulnerabilities aren’t worth your attention (source)
- Airplay-enabled devices open to attack via “AirBorne” vulnerabilities (source)
- Ukrainian extradited to US for Nefilim ransomware attacks (source)