A rogue Raspberry Pi helped hackers access NASA JPL systems Engadget

Sponsored Links

gemini.png
dims?quality=85&image_uri=https%3A%2F%2Fo.aolcdn.com%2Fimages%2Fdims%3Fcrop%3D5049%252C3144%252C0%252C30%26quality%3D85%26format%3Djpg%26resize%3D1600%252C996%26image_uri%3Dhttps%253A%252F%252Fs.yimg.com%252Fos%252Fcreatr-images%252F2019-06%252Fd9d5e450-9324-11e9-9235-97912d046094%26client%3Da1acac3e1b3290917d92%26signature%3D68b3bdb215cb28c36dd56ec9f139d1e618652b90&client=amp-blogside-v2&signature=e058f956d79b06566d6a78c30e8eb417cd06b4dc Andrei Stanescu via Getty Images

NASA's Jet Propulsion Laboratory (JPL) suffers from multiple cybersecurity weaknesses notwithstanding the advances it has executed in area generation, in keeping with the company's Office of Inspector General (PDF). Investigators regarded into the studies middle's network security controls after an April2019 safety breach, wherein a Raspberry Pi that turned into no longer legal to be connected to the JPL community changed into targeted through hackers. The attackers had been able to thieve 500 megabytes of statistics from certainly one of its primary assignment systems, and they also used that risk to find a gateway that allowed them to head deeper into JPL's community.

Diving deeper into the machine gave the hackers get entry to to several important missions, consisting of NASA's Deep Space Network -- its community of spacecraft verbal exchange centers. As a end result, the security groups of some touchy programs, consisting of the Orion Multi-Purpose Crew Vehicle and the International Space Station, have chosen to disconnect from the organization's network.

In addition to having reduced visibility to gadgets connected to its network and to now not preserving exceptional parts of its network separate, investigators have additionally discovered instances of protection tickets now not being resolved for extended intervals of time. In some instances, the tickets sat unresolved for so long as 180 days. The investigators have also noted that JPL's incident management and response practices deviate from NASA's guidelines.

The OIG encouraged a repair for all those issues, and NASA agreed to all of them besides one: organising a proper threat-looking system to locate flaws before they even cause problems. It will verify if JPL follows thru before ultimate the investigation entirely.

Via: Threatpost
In this newsletter: gear, jpl, nasa, security
All merchandise recommended with the aid of Engadget are decided on through our editorial crew, independent of our figure business enterprise. Some of our testimonies include affiliate links. If you buy some thing through one of these links, we might also earn an affiliate commission.
Shares
Share
Tweet
Share
Save
Comments

Let's block advertisements! (Why?)


//www.engadget.com/2019/06/20/nasa-jpl-cybersecurity-weaknesses/
2019-06-20 08:05:39Z
CAIiEKvmzk-COeZcrQeNAvJKKG4qGAgEKg8IACoHCAowwOjjAjDp3xswpuqvAw

0 Response to "A rogue Raspberry Pi helped hackers access NASA JPL systems Engadget"

Post a Comment

Iklan Atas Artikel

Iklan Tengah Artikel 1

Iklan Tengah Artikel 2

Iklan Bawah Artikel