Professor John Walker
Professor John Walker has highlighted inadequate government security

US government security data compromised

DNS slip-up opens up CIA, FBI and DoD information

Robert Blincoe

The security of data held by the CIA, the FBI and the US Department of Defense was compromised earlier this year after a partner agency allowed zone transfer access of its Domain Name Services.

Professor John Walker, managing director of forensics consultancy Secure-Bastion, revealed the security blunder during the International Crime Science conference in London last week.

Advertisement

Professor Walker had been testing DNS environments as part of his academic research.

"In one case an organisation in the US, working with some government agencies, allowed me to get into their systems to see their servers named for their clients. Their servers were called 'CIA', 'FBI' and 'DoD'," he said.

Professor Walker confirmed to vnunet.com that these names referred to the actual US law enforcement and defence agencies.

"The DNS is a logical map of all the assets of a company. If you can take the logical map of the assets out (IP addresses, system names) you've got an awful lot of intelligence to work on," he said.

It's not that the criminals are so clever, but that we're so stupid

Professor John Walker Secure-Bastion

"And you can work quietly because you no longer have to go to the organisation to get the data because it's sitting on your PC."

When Professor Walker reported the security flaw, the organisation said " Thank God you've found it" and closed it down. "I didn't go down any further because I valued my liberty," he said.

"In my work I get the pleasure of seeing other people's systems. I invariably walk away not believing what I've seen. It's not that the criminals are so clever, but that we're so stupid."

The International Crime Science Conference was organised by the Centre for Security and Crime Science at University College London.

  • Have your say
  • Send to a friend
  • Print
  • Digg
  • Reddit
  • Share

Do you agree?

Related whitepapers

Related jobs

Most watched

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

Xperia X1

Video Review: Sony Ericsson Xperia X1

First Looks Editor Ian Williams gets hands on with the Sony Ericsson Xperia X1

IT white papers

Search white papers

Top categories

Poll

Poll: Summer smartphones

Poll: Summer smartphones

Which smartphone will you be taking to the beach this summer?

View poll results

Advertisement

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Spotlight

iPhone

Video Review: iPhone 3GS

We put Apple's latest iPhone through its paces

old computer

Government honours veterans of Bletchley Park at last

Surviving veterans of the code-breaking facility to receive badge of...

Motorola MC55 Enterprise Digital Assistant

Review: Motorola MC55 Enterprise Digital Assistant

A rugged Windows Mobile device for mobile workers

BT

BT promises 1.5m fibre connections by summer 2010

Telco begins major rollout in 69 locations across the UK

Primary Navigation