[EAS] Dallas warning sirens hacked - maybe

Sean Donelan sean at donelan.com
Thu Apr 13 21:01:55 CDT 2017


On Thu, 13 Apr 2017, Ed Czarnecki wrote:
> The latter, however, is a different matter for the vendor and its users.
> Since this is apparently not a "cyber" issue, it probably won't go through
> CERT.

Even without a published, technical description of the problem or what 
Dallas did to fix it; other competing vendors have already started 
sending out press releases about the excellent security of their outdoor 
siren controllers.

That's a dangerous thing marketing managers do, without knowing the full 
details. Internet companies took a couple of decades to learn the lesson, 
don't gloat about other people's security problems. Industrial Control 
System vendors are slowly learning the same lesson working with ICS-CERT 
and industry groups.

Treat every problem as a learning opportunity.



More information about the EAS mailing list