The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Open discussion about any topic, as long as you abide by the rules of course!
Post Reply
User avatar
Transient
Posts: 11357
Joined: Fri Feb 09, 2001 8:00 am

The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by Transient »

https://motherboard.vice.com/en_us/arti ... gao-report
That’s the finding of a new report from the Government Accountability Office (GAO)—a non-partisan agency that investigates issues at Congress’ request. In a report published on Tuesday, the GAO found “mission-critical cyber vulnerabilities in nearly all weapon systems that were under development.” According to the report, software-enabled functions that are “potentially susceptible to compromise” include targeting missiles and flying aircraft.
I'm not surprised in the least. Not changing default passwords seems to be the norm in Washington. :rolleyes:
User avatar
Whiskey 7
Posts: 9709
Joined: Sat Jul 21, 2001 7:00 am

Re: The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by Whiskey 7 »

Ah, the mention of passwords :paranoid:

I have been meaning to change mine just 'cause it's time and I should do it routinely. One of my passwords is from 'dial-up' days.
[color=#FFBF00]Physicist [/color][color=#FF4000]of[/color] [color=#0000FF]Q3W[/color]
User avatar
PhoeniX
Posts: 4067
Joined: Fri Aug 04, 2000 7:00 am

Re: The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by PhoeniX »

Whiskey 7 wrote:Ah, the mention of passwords :paranoid:

I have been meaning to change mine just 'cause it's time and I should do it routinely. One of my passwords is from 'dial-up' days.
Just switch to lastpass, it's free and integrates/syncs with all browsers and Android/iPhone. Every website I have an account on has a completely different and randomised password to every other site, all I have to remember is my master password. So if one site gets compromised it doesn't matter, they can't then login to my email or other sites I have an account on :up:.

https://www.lastpass.com/
User avatar
Transient
Posts: 11357
Joined: Fri Feb 09, 2001 8:00 am

Re: The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by Transient »

Yeah I worry about password managers. Some store passwords on a server that can be hacked, some use browser extensions which can break during an update, others have just gone out of business and stopped updating their software. I worry...
User avatar
PhoeniX
Posts: 4067
Joined: Fri Aug 04, 2000 7:00 am

Re: The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by PhoeniX »

Lastpass uses end-to-end encryption. E.g., your device encrypts all the data with your password before sending it to their servers, then your device decrypts all the data from their server with your password. They don't store your raw passwords just the garbled ones. Obviously if someone was to hack them they could push out a rogue version of the app/browser extension that stole your master password when you entered it, but I doubt it.. stop being paranoid :p

(Lastpass does let you export your passwords to a CSV or something if you want a fully offline backup, which is worth doing every so often)
User avatar
Eraser
Posts: 19175
Joined: Fri Dec 01, 2000 8:00 am

Re: The Pentagon's Weapons Are 'Easily Hacked' With 'Basic Tools

Post by Eraser »

Transient wrote:Yeah I worry about password managers. Some store passwords on a server that can be hacked, some use browser extensions which can break during an update, others have just gone out of business and stopped updating their software. I worry...
It's one of the reasons why I still use Keepass. It stores passwords in a local database that's under your own control.
My Keepass database is protected with both a password and a 256 bit private key (file). I put the database in Dropbox and keep the private key file on my own devices. That way the DB is synced across all devices and even if Dropbox is hacked, they'd still need my private key and the password to open the database.
Post Reply