Software developer at a big library, cyclist, photographer, hiker, reader. Email: chris@improbable.org
20996 stories
·
196 followers

Florida city water cyber incident allegedly caused by employee error - GCN

1 Share

In 2021, news broke of a cyberattack at the Oldsmar, Florida, water treatment plant, an event that sparked fears about the cyber vulnerabilities of critical infrastructure.

At the time, reports suggested that a worker at the plant saw his computer being remotely accessed and controlled. His mouse moved to open functions to control water treatment protocols, and then the amount of sodium hydroxide, or lye, in the water was changed from about 100 parts per million to 11,100 parts per million. The operator immediately reduced the chemical to the proper level and alerted a supervisor.

The alleged hack, which gained worldwide publicity from subsequent press conferences given by Pinellas County Sheriff Bob Gualtieri and other leading officials, prompted an investigation led by the FBI and the U.S. Secret Service, as well as a joint federal advisory warning water treatment facility operators of the dangers they faced from hackers and urging them to upgrade their security systems.

But according to one official who was with the city at the time, the incident was not a hack at all, just a case of an employee mistakenly clicking on the wrong buttons, before alerting his superiors to his error.

Former Oldsmar City Manager Al Braithwaite described it as a “non-event” that was resolved in two minutes, but said law enforcement and the media seized on the idea of a cyberattack and “ran with it.” The attention resulted in a four-month FBI investigation, which Braithwaite said reached the same conclusion that employee error was to blame.

“The FBI concluded there was nothing, no evidence of any access from the outside, and that it was likely the same employee that was purported to be a hero for catching it, was actually banging on his keyboard,” Braithwaite said in a March 20 panel discussion during the American Society for Public Administration’s Annual Conference.

A spokesperson with the FBI’s Tampa Field Office, which led the federal investigation in 2021, declined to comment on the investigation or on any conclusions it drew, citing restrictions under federal law.

Braithwaite said that the various investigations spawned by the incident, including one by the Florida Office of Information Technology, were particularly critical of the staff in Oldsmar, which he said runs its water treatment facility on a network made up of five computers and a couple of iPads.

“Our staff felt like they were being accused [by investigators] of being the criminals,” he said. Braithwaite said state officials came in “to identify our many—I admit it, many—vulnerabilities,” and to suggest ways they could remedy them. He added that the investigations were “extremely taxing” on staff.

As for the employee who made the error and then reported it to his supervisors, Braithwaite said he has not been fired, and nor should he have been.

“The employee did everything he was supposed to do,” he said. “I could say that they screwed up and that there was some kind of accountability that needed to be dished out.” Instead, Braithwaite said the responsibility rested with him as the city manager, as he was “responsible for everything that goes on there.”

“I wasn't, but I should have been held accountable for the fact that it happened, even if they discovered later on that it didn't really happen,” he added.

Other panelists said terminating employees for following standard operating procedures would set a dangerous precedent, especially given the staff shortages state and local governments have in tech and cybersecurity.

“If you think you have an employee shortage now, and it gets out that you're going to fire somebody over that, you're really going to have a big employee shortage,” said Karen Evans, executive director at the Cyber Readiness Institute and former federal CIO. “I'm not saying you don't talk to him [about mistakes], but I definitely say that you don't fire him.”

City leaders in Florida leery of copycat attacks on their systems had budget requests for more cybersecurity funding quickly approved after the incident in Oldsmar, Braithwaite said, which he said was one benefit of Gualtieri’s press conferences shining a light on the issue. But even now, Braithwaite said he still does not know how big a spend constitutes “good cybersecurity money,” as the threats are constantly changing and are less tangible than potholes or other physical infrastructure.

Read the whole story
Share this story
Delete

Saturday Morning Breakfast Cereal - Suffering

2 Shares


Click here to go see the bonus panel!

Hovertext:
Please consult yesterday's comments (we have comments now) for the excellent post by Hans Rickheit.


Today's News:

We have them, like it's the 90s again! Please don't be a dick - I would like to keep moderation light. Also, if you have mod experience, please email me.

Read the whole story
Share this story
Delete

These maps show how parking lots "eat" U.S. cities - Big Think

1 Share

Read the whole story
Share this story
Delete

Towed Message

1 Comment and 3 Shares
"Hi, what you do is fly over a designated zone and detach the--" "WE'RE SORRY, THE MOBILE CUSTOMER YOU ARE TRYING TO REACH IS OUT OF SERVICE"
Read the whole story
Share this story
Delete
1 public comment
alt_text_bot
1 day ago
reply
"Hi, what you do is fly over a designated zone and detach the--" "WE'RE SORRY, THE MOBILE CUSTOMER YOU ARE TRYING TO REACH IS OUT OF SERVICE"
dlwright
17 hours ago
Says, "Nah."

Decisive Moments by A.I.

1 Share

.

(For A.I. poll, please go here.)

For years it has been in development, but in recent months, there has been remarkable breakthroughs in artificial intelligence — especially in the field of generative AI, that enables machines to create text and images.

The operative word is create. AI creates. It doesn’t provide facts, will lie with brazeness of a politician, and doubledown on mistakes (e.g. 1+1 = 3). But its artistic abilities are great. You can ask AI to write a James Bond script, paint Spongebob in style of Van Gogh, or compose an ode to Einstein in iambic pentameter.

So it can paint. Can it take photos in a style of a particular photographer. This is a tricky terrain since AI-generated images can still look surreal, dreamlike, and artificially lit — not a bad thing for paintings but can be tricky for photos, where you can end up with uncanny valley.

I set out to explore.

I use Henri Cartier-Bresson — partly because he was arguably the most famous and accessible photojournalist of last century (meaning there’s a lot of photos by him as reference material) and he has a distinctive style and visual elements that AI can learn to recognize. (Midjourney maintains a training set of photographers).

.

So what’s the verdict?

Even the current photos don’t look that realistic, but it has made huge improvements in last 4-6 months. I cannot imagine what it can do in 2-3 months’ time.

Copying the style of one photographer seems to be the more challenging part. Unlike van Gogh or Leonardo or Turner, the style of a photographer can be hard to pin down, when many photographers may use similar framings, similar cameras and settings, and the same photographer will use different cameras and settings.

For me, I have tried to generate some of the photos above using these settings: “Leica M10 Monochrom. ISO 400, f/4, 1/125s, 35mm”.

.

dumdum-patreon

If you like what I do and what I write, or simply wants me to write more, you can support me via Patreon. I had tremendous fun researching and writing Iconic Photos, and the Patreon is a way for this blog to be self-sustaining.

Currently there is a poll there on:

What sort of iconic photos / images from past eras you want to see? In which photographer’s style? Please go and comment. (https://www.patreon.com/posts/poll-iconic-by-i-80820823)

Proceeds mainly go to buying photography reference books and support me on my research (re: paywalled articles, trips to various archives). In addition to monthly addenda posts on Patreon, readers who subscribe on Patreon might have access to a few blog posts early; chance to request topics or to participate in some polls

Even if Patreon isn’t your thing, you can support by re-sharing, or tweeting about the blog or the specific posts on here. Thanks for your continued support!  Here is the link:

https://www.patreon.com/iconicphotos





Read the whole story
Share this story
Delete

CDC team studying health impacts of East Palestine train derailment fell ill during investigation - CBS Pittsburgh

1 Share
Read the whole story
Share this story
Delete
Next Page of Stories