27 Nov 2001
Security experts have labelled cyber terrorism as "fantasy" and called the FBI "ill-advised" for raising unnecessary concerns about viruses.
Following Osama bin Laden's attack on the US, Richard Clarke, cyberspace security adviser to the White House, described the perceived threat to America from viruses and hacking as a "digital Pearl Harbor".
But no evidence has so far been produced to suggest that "rogue nations and terrorists" are waging an information war against the West.
"If there was going to be cyber terrorism, why hasn't it happened?" asked Graham Cluley, senior technology consultant for antivirus (AV) specialist Sophos.
"Viruses don't make good weapons for warfare; they have no guidance system so the sender could easily become his own victim unless protected and even then the most sophisticated viruses have antidotes written for them by AV companies within a matter of hours," he said.
Cluley insisted that cyber terrorism was not the next battlefield for international conflict. Only a few politically motivated viruses have been launched, all of which were harmless and easily dealt with, he said.
He also criticised the FBI over its Magic Lantern, a Trojan virus which the Bureau plans to release on suspected terrorist groups to extract information from systems without their knowledge.
The hacking technology is believed to be more than three years old, according to some US experts.
"It seems like the FBI is just trying to see if they can come up with different options and ways that electronic surveillance can be done," said Vincent Gullotto, director of security specialist Networks Associates' AV emergency response team.
AV specialist McAfee, part of Network Associates, denied reports in the Washington Post last week that it would make sure its software did not prevent Magic Lantern.
Sophos believes the FBI is not best placed to preach about AV measures, having itself been a victim of the SirCam virus earlier this year when classified documents were sent to the FBI's mailing list because it had failed to update AV software.
The FBI has also failed to prosecute David L Smith, the author of the Melissa virus which caused $80m worth of damage to US businesses. Smith pleaded guilty on 10 December 1999 and has still to be sentenced.
"Funny that," said Cluley, given that the FBI itself is now developing its own viruses.
Cluley also criticised the Bureau's handling of the Code Red affair in July, when FBI spokesmen warned of the "meltdown of the internet".
"The FBI was ill-advised. It should have said it only affected business users and here's how to deal with it," he explained.
Code Red does not even feature in Sophos' top 10 most reported viruses for the year.
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
My client is a well established, non profit organisation;...
PHP Web Developer – £30,000 - £35,000 PHP, MySQL, HTML...
HEAD OF DIGITAL - London - £80-95K + Excellent Bens...
Agile C# Developer - (North London) £55,000 - £65,000...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Umm... what?
So, Appleby, are you criticising the author of the article? Cos it seems to me that the article was sufficiently researched for what it is - a report on the stance of OTHERS, and THEIR comments on cyber-terrorism. By all means, go ahead and show me ANY example of editorialising in this article (which will be needed for your criticism to even have a solid grounding, let alone credibility).
Posted by: marien danzig 11 Mar 2011
You are missing too much evidence
You should do your homework better before making such accusations - I would suggest you begin with E.Timor when the Indonesian government took down the entire country's webserver with too many hits to websites that had the tag for East Timor. Next, check out the mayor of Tokyo's website and Yasukuni shrine's website which are frequently targeted by hits from Chinese and Korean nationalists. The aim is to hit a website with an overwhelming number of hits so that the website collapses. These are classic cases of cyber-terrorism that use programs and people to overwhelm websites with too many hits - thus shutting them down. China and Korea are the biggest culprits of cyber-terrorism. Not to mention the war between Hizb'allah and Israel in closing each other's websites down with viruses, hacking, too many web hits for the server to cope and threats to unleash all three unless the host removes the website.
Posted by: Nick Appleby 13 Aug 2006