Hack us, and we'll bomb you
arstechnica.com
arstechnica.com
Ars Headline: "US warns: hack us, and we might bomb you"
Submission title: "Hack us, and we'll bomb you"
There wasn't an intention to add editorial spin the headline, but it seems my sloppy transcription betrays my feelings on reading it.
Source: http://www.airpower.au.af.mil/airchronicles/apj/apj96/spec96...
Aside from the issue of it being hard it is to be able to successfully geographically locate the source of an attack, what if a bunch of hackers in China, operating privately, decide to hack the US. Is US going to bomb China if the level of the attack is severe enough? Diplomatic efforts will fail pretty quickly if it genuinely isn't anything conducted by the Chinese government.
But hey, let's swap out the contentious example of China for Australia or France - is America going to bomb either of those countries because private citizens in those locations are pursuing a national cyber-security warfare-level attack?
If Al Quedia et al have taught us anything it is that we cannot assume national security attacks (and our defense strategies) to be state-sponsored any more.
On 26 March 2010 the North Korean military launched a torpedo sinking a US ally's warship, killing 46 of it's 108 crew during a time of peace. The Cheonan represented a significant loss to the South Korean people, and though economic relations between the two nations broke down, no real military action was taken by either the US or South Korea.
And now you're telling me we'll go to war if someone takes out the internet?
Interesting. I never thought about someone "taking out" the internet. An internet kill switch would be useful to a government wanting to start a war. Simply kill the internet, then blame it on the country of your choice.
Hell, shutting off Google for a few days would probably kill more than 46 people if medical residents aren't able to look stuff up as quickly as they can now.
Its a bit like in the Cold War when the US said it would respond to a nuclear attack in kind. Making clear how you intend to respond can be a deterrent.
Oh, you thought that "states" meant government bodies?
Yes, you can live in country 'A' and route all traffic through a country you hate, 'X', making that country get all the heat. Country 'X' would then attempt to prove that the attackers came from another country.
This is a lost battle... while a country points the blame to other country, that country would forward the blame to yet another country.
There is an insane amount of vulnerability scanning/port scanning coming from China. You can bet that one of those remote attackers is bound to hit an improperly protected box in the US. It may not even be an attacker, it could be a home PC from a botnet, mindlessly port-scanning IP ranges. Does that mean the US would bomb China?
I mean, an attack can come from a single source but be routed behind so many countries, even from the US itself!
It's unfair, bullying, and bad diplomacy, but it's not stupid.
Of course if Chinese hackers shut down our utilities/communications, that's certainly a real-life attack, and it will be easier to convince the crowds that we know a enemy government is responsible.
I always thought this was rather silly overreacting. Now US policy makes it possible for a hacker to start a war.
If my neighbor were to be constantly trying to break into my computers at home with the intent of destroying them, and there was no chance to appeal to law enforcement, I could certainly see going and knocking on their door with the desire to stop them from doing that.
However, the US has a history of finding reasons to go to war in unexpected places, since 1960 at least. Any excuse to expand the reasons they can pick is worthy of scrutiny.
2. the IPs are geo-located
3. the Reapers on duty flying closest to the locations receive the targeting info and deliver the Hellfires.
Everything in completely automated mode, no humans involvement needed.