Mon, 15 Jan 2024
A Kings Ransom. In Bitcoin.
The British Library has had a big problem recently, as they were saying throughout their web site :

We're continuing to experience a major technology outage as a result of a cyber-attack. Our buildings are open as usual, however, the outage is still affecting our website, online systems and services, as well as some onsite services. This is a temporary website, with limited content outlining the services that are currently available, as well as what's on at the Library.

This has been the case for weeks although it appears they are restoring some services now.

I've been reading about "ransom ware" cyber-attacks for a few years now: this is when an attacker gets access to a computer system, server or network and encrypts (scrambles) the files and data so the systems are unusable. They then demand money to unlock the data. Perhaps money not to leak the data online in public. This sort of attack has affected hospitals, businesses and government. It's getting worse. So bad in fact, that people are waking up to the National Security implications.

The Economist had a recent article about the problem (How ransomware could cripple countries, not just companies) and one of the things it mentioned was the fact that Bitcoin, a hard to track anonymous digital currency, is one of the things that made the problem much worse. In fact, Bitcoin is a major enabler of the crime :

The hardest part of a ransomware attack was once cashing out and laundering the ransom. Attackers would have to buy high-end goods using stolen banking credentials and sell them on the black market in Russia, losing perhaps 60-70% of the profit along the way. Cryptocurrency has enabled them to cash out immediately with little risk.

With everything increasingly connected (think "5G"), and network and computer security so poor (for many reasons), it might get very bumpy. Let's not talk about war.

Above: A wrench interrupted. Image from ArsTechnica.

Last week I came across yet another media report of ransonware : infecting a Bosch Torque wrench ("Handheld Nutrunner NXA015S-B 3-15NM"). This was detailed in a post on ArsTechnica.

My initial reaction was a bit of amusement: an internet connected wrench? But maybe a modern manufacturing business has a good case for logging or setting all sorts of things over a network: this was even part of the case for "5G" networks. But if so much of modern life is now network connected, how screwed will we be if it is attacked, compromised and rendered unusable?

