4 ms·
I think you miss the point. Such a critical system should not be so fragile that pretty much anyone can disable it, one would hope.
by mindstab 14y ago
I think you miss the point. Such a critical system should not be so fragile that pretty much anyone can disable it, one would hope.
- ghshephard 14y agoNo - I totally get the point. But, if you are going to engage in criminal activity, the bar to your destructive behavior isn't a $650 transmitter. It's a $20 containers of gasoline. If you want to hurt people, it's pretty much impossible to stop you from doing so (or even slowing you down) - all we can do is catch you, and put you in prison after you do so so that you can't hurt more people. I'm not suggesting we ignore security (I like SSL, and passwords on my accounts) - but we can't create a world where everyone has to treat the populace as though they are intent on creating destruction. This is the mindset of the TSA and "Search everyone, because any one of them might be carrying a bomb." At a certain point, we have to trust that the vast, vast majority of people are good. And, in the whole scope of things, jamming an LTE radio transmission system has pretty big penalties, and very little financial payoff, and a pretty good chance of being caught. It's one of those asymmetric criminal activities that is balanced in favor of society, and against the criminal. Where you want to put your attention in enhancing defenses, is places where there is a strong incentive to commit the crime, and less chance of being caught. Guarding against petty thieves, lots of safeguards/fraud alerts around things like credit cards, or your paypal account. That's where attention needs to be spent. You know where it's important to spend a lot of money on counter-jamming? Life Safety systems like Nuclear Power Plants, or Plane/Car navigation systems. Where lives are on the line, I totally agree that we need to harden, harden, harden those systems. Also, SCADA systems - that control large amounts of underlying infrastructure. And the Stock Exchange. Spend a fortune on ensuring that the bad guys can't cause havoc, kill people, or create large economic damage. Perhaps your LTE/Cellular coverage is better than mine, but I'm pretty used to having to track down a WiFi connection to get any serious work done, or make a reliable Skype call. I don't put LTE coverage in the "Mission Critical" category of infrastructure. Also, if you are in a situation (Prison, battlefield) where the vast majority of your opponents are intent on doing you harm, you also harden the crap out of everything. And pay the price - because you need to. But, all else equal, I'd rather have the money/resources that might have gone into putting MILSPEC anti-jamming capabilities into my LTE NIC, instead be spent on making it cost less, draw less battery, and give me more bandwidth. Let the FCC catch the 3-5 jammers at year intent on doing harm, and put them in prison to consider the wisdom of their behavior.
- anigbrowl 14y agoI think you're arguing at cross-purposes. You are quite right in relation to crime or vandalism by a member of US society carried out for mere profit or malice. But consider the more troubling case of terrorism or similar organized attack. If one can disrupt cellular communications on a large scale parallel to an attack on physical infrastructure (eg a bomb or...), the immediate and economic damage could be significantly multiplied. Likewise, consider temporary but coordinated outages in 10 or 20 major metros. It would be difficult to catch the perpetrators but would impose considerable economic costs.
- jacquesm 14y agoThe more high-tech a society is the more vulnerable it is to this kind of attack. Infrastructure that isn't there can't be broken.
- ghshephard 14y agoI think the key is to understand what should be considered part of our "critical infrastructure" and ensure that is reliable. For example, when I was managing the IT organization for our company, despite the fact that everyone in the office has a cell phone, and despite the fact that they also have a VOIP phone (Polycom Soundpoint IP 501 SIP), that is driven of of POE connections, and we have a generator with 36 hours of diesel supplying the routers/switches that supply those phone - Every conference room had a POTS (Plain Old Telephone Systems) analog phone line that was cross-connected with a piece of copper at our punch-down block, directly to the 300 pair coming into our MPOE - no active electronics (on site) required. Those land lines are the critical infrastructure, that need to be defended (along with COs backing them up). If someone comes up with a good (cheap) attack against them, that will get my attention. I guess another way of approaching this is, if Police/Fire/Medical organization start relying on LTE systems, and those LTE systems become a critical part of our infrastructure for economic/infrastructure/life safety systems, then yes, we need to start focussing on hardening them. This is my way of saying yes, when we wargame this out, we should consider "What happens if there is an extended LTE outage during a disaster, does this impact our first responders significantly? And if so, we need to take steps to protect ourselves there." Important to note - it's highly unlikely that any group of people will be able to establish a coordinated attack on 20 major metros. That level of conspiracy would be stopped by the time planning got to the 3-5 city attack. And that's another point - let's not spend large sums of money trying to harden the LTE system (though, reasonable investment makes sense, so the research presented is good) - but instead, let's direct those resources to tracking (and stopping) the bad guys that would do this sort of thing in the first place. That, then, protects us from all of their attacks, not just the LTE wireless system.