Researchers from Politecnico di Milano and Trend Micro conducted an audit of the information security design of commonly used industrial robots and found that these devices are extremely insecure: robots could be easily reprogrammed to violate their safety parameters, both by distorting the robots' ability to move accurately and by changing the movements the robots attempt to perform; hacked robots can also be made to perform movements with more force than is safe; normal safety measures that limit speed and force can be disabled; robots can be made to falsify their own telemetry, fooling human operators; emergency manual override switches can be disabled or hidden; robots can be silently switched from manual to automatic operation, making them move suddenly and forcefully while dangerously close to oblivious, trusting humans; and of course, robots can be caused to manufacture faulty goods that have to be remanufactured or scrapped.
All of this is possible because industrial robotic control systems lack even the most basic security -- instead of cryptographically hashing passwords, they store them in the clear (with a single, deterministic XOR operation to provide a useless hurdle against hackers); controllers expose an FTP process during bootup that accepts new firmware loads without authentication; network-level commands are not encrypted or signed; controllers use hardcoded usernames and passwords; memory corruption attacks are easy and devastating; the runtimes for the control instructions are poorly isolated from other processes -- the paper goes on and on.
Industrial robots epitomize all the problems of the Internet of Shit -- operators who have little or no security expertise, a lack of easy updating, and lazy, sloppy design. But whereas killing someone with the Internet of Shit involves things like turning off the heat in February in Minnesota, industrial robots are giant, barely constrained killing machines.
We explored, theoretically and experimentally, the challenges and impacts of the security of modern industrial robots. We built an attacker model, and showed how an attacker can compromise a robot controller and gain full control of the robot, altering the production process. We explored the potential impacts of such attacks and experimentally evaluated the resilience of a widespread model of industrial robot (representative of a de facto standard architecture) against cyber attacks. We then discussed the domain-specific barriers that make smooth adoption of countermeasures a challenging task.
Interesting future research directions include exploring multi-robot deployments, co-bots, and the safety and security implications of the adoption of wireless connections. Also, an improved survey would produce statistically significant results. We definitely plan to analyze controllers from other vendors, to further confirm the generality of our approach.
An Experimental Security Analysis of an Industrial Robot Controller [Davide Quarta, Marcello Pogliani, Mario Polino, Federico Maggi, Andrea Maria Zanchettin, and Stefano Zanero/Industrial Robots Security]
(via 4 Short Links)
University of Tulsa security researchers Jason Staggs and his colleagues will present Adventures in Attacking Wind Farm Control Networks at this years Black Hat conference, detailing the work they did penetration-testing windfarms.
Yesterdays massive ransomware outbreak of a mutant, NSA-supercharged strain of the Petya malware is still spreading, but the malwares author made a mere $10K off it and will likely not see a penny more, because Posteo, the German email provider the crook used for ransom payment negotiations, shut down their account.
Petya is a well-known ransomware app that has attained a new, deadly virulence, with thousands of new infection attempts hitting Kaspersky Labs honeypots; security firm Avira attributes this new hardiness to the incorporation of EternalBlue the same NSA cyberweapon that the Wannacry ransomware used, which was published by The Shadow Brokers hacker group []
Despite the upfront cost, electric toothbrushes are much better at removing plaque than those freebies from the dentists office. For those who struggle to fill the American Dental Associations recommended two minutes of brushing time, or anyone with limited dexterity, a sonic toothbrush can give your oral care routine a boost.To keep your chops healthy []
Learning a new language will give your resume an upgrade, sure, but it will also provide a huge cognitive boost for mental tasks outside of translation and conversation. Bilingual brains have been shown to be better at handling multiple concurrent tasks, and gaining fluency in a new tongue is an amazing way to improve memory, []
If you struggle to get a good nights rest, consider replacing your pillows before dropping hundreds on a new mattress. You can give your tired neck a break with a 2-pack of memory foam pillows, available now in the Boing Boing Store.Each of these pillows is stuffed with cooling polyurethane foam that molds to your []
Originally posted here:
Industrial robotics security is really, really terrible / Boing Boing - Boing Boing
- Robotics Academy [Last Updated On: December 14th, 2016] [Originally Added On: December 14th, 2016]
- KUKA Robotics | KUKA AG [Last Updated On: December 14th, 2016] [Originally Added On: December 14th, 2016]
- Robotics - The Great Courses [Last Updated On: December 22nd, 2016] [Originally Added On: December 22nd, 2016]
- Robotics - reddit [Last Updated On: January 11th, 2017] [Originally Added On: January 11th, 2017]
- Chatham Robotics Goes Undefeated and Moves On to State Championship - TAPinto.net [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Meridian robotics team gears up for Idaho FRC Regional - KBOI-TV [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Local robotics students headed to World Championship tournament - KOLO [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Report: Nearshoring favors robotics, will require heavy capital investment - Supply Chain Dive [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Belding hosts largest robotics competition in history of event - Greenville Daily News [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- First Tech Challenge: High schools battle in robotics competition - The Journal News | LoHud.com [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Robotics Team Takes Home Trophy at Lego Competition - Patch.com [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- OHS robotics club dazzles McKinley students - Southernminn.com [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Toyota Industries Acquires Warehouse Robotics Developer - Wall Street Journal [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- South High wins Volvo's robotics tournament - Herald-Mail Media [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Belding hosts robotics competition - Sentinel-Standard [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- CMS robotics program soars - SW News Media [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Update On The Megatrend of Robotics - CTOvision (blog) [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- 33C3: Edible Soft Robotics - Hackaday [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Shopping robots on the march in Ocado - BBC News [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Keller students Starstruck on robotics - Fort Worth Star Telegram [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Our obsession with robots keeps getting creepier - New York Post [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Rethink Robotics makes its workplace bots easier to train and redeploy - TechCrunch [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Donation will cover costs for Sequim robotic competition - Peninsula Daily News [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Derby Middle School robotics club competes at high school competition - The Derby Informer [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Raspberry Pi-powered arm: This kit aims to make robotics simple enough for kids - TechRepublic [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- WPI Robotics Team Has a Mission with Mars | News | WPI - WPI News [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Rehab robotics field promises to return control, mobility to aging population - ScienceBlog.com (blog) [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Rethink's Robots Get Massive Software Upgrade, Rodney Brooks So Excited - IEEE Spectrum [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Robotics: A robot that flies like a bat : Nature : Nature Research - Nature.com [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Robotics teams at CCS stay busy at tournaments - Imperial Republican [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Rethink Robotics rethinks its software | ZDNet - ZDNet [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Hartland robotics teams take on the FIRST Tech challenge at state competition - LC Sussex Sun [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Home-schooled students studying robotics - Valencia County News Bulletin [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Agility Robotics Introduces Cassie, a Dynamic and Talented Robot Delivery Ostrich - IEEE Spectrum [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Memphis robotics team headed to Super-Regionals - New Baltimore Voice Newspapers [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Patriot Robotics Alliance upsets Brentwood Academy Alliances - Clarksville Now [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Raptor legs & human hips: Giant leap for walking robots - RT [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- How drones and robotics may shape the future of conflict under President Trump - PRI [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Robotics teams wins at state meet - The Citizen.com [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Ford Bets $1B on Startup Founded by Waymo, Uber Vets - ABC News [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- South Beach robotics squad advances to super regionals - The Daily World [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Personal robotics the next technological revolution: Dr Vivian Balakrishnan - Channel NewsAsia [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- This bipedal robot could deliver your packages one day - The Verge - The Verge [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Robotics event offers lesson in teamwork - Lewiston Morning Tribune (subscription) [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Essex County Freeholders Honor Livingston Robotics Club Teams - TAPinto.net [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- College Town: WPI Robotics team aims for $1M NASA prize - Worcester Telegram [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Alice Shaw robotics team building invention to save wolves | Local ... - Lompoc Record [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Ford invests $1B in robotics startup in driverless car quest - CBS News [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Freshman Caldwell team takes first place in Regional Robotics Tournament - Idaho Press-Tribune [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- What went seriously wrong with Lily Robotics - VentureBeat [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Face off: Marion students compete in robotics competition - The Exponent Telegram (press release) (registration) [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Robotics Competition slated for Monday - San Angelo Standard Times [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Cornerstone Prep robotics team brings home trophy in first year - MDJOnline.com [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Center Grove robotics team headed to state competition - Daily Journal [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Hundreds piled into a Fort Mill gym. They cheered. They competed. They drove robots. - The Herald [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- My Turn: Arts education paved the way for girls' robotics win - AZCentral.com [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Young Alberta engineers face off in robotics showdown - CBC.ca [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Cougar robotics team advances to Super-Regionals - Times Bulletin - Times Bulletin [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- South Carroll Robotics teams compete at Maryland State Robotics Competition - Carroll County Times [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Cave Spring High School's Robotics Club wins in the First Tech ... - Roanoke Times [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- FIRST Robotics Competition - Wikipedia [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Designing robots to look more like ostriches can solve a key problem for our future biped overlords - Quartz [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- More than 1000 high school students expected to Battlefield HS robotics tournament - PotomacLocal.com [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- Event to look at Scotland's pivotal role in robotics - The Scotsman [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- Kennett Coders to compete in NH State Robotics Championships on Saturday - Conway Daily Sun [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- Are there enough robots? - Robotics Tomorrow (press release) [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Girl Scouts of Southern Illinois robotics team makes state tournament - Alton Telegraph [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Intuition Robotics raised $6 million for its ElliQ elder care assistant robot - TechCrunch [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Richmond robotics team gears up for districts - New Baltimore Voice Newspapers [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Microsoft lets you crash drones and robots in its new real world simulator - The Verge [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Makeblock's Lego-like 'Neuron' teaches kids robotics and code - Engadget [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- West Ridge robotics team maneuvers into national championship - Austin American-Statesman [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Immokalee High team set for robotics state championships Friday - Naples Daily News [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- What has Robotics got in store for our future? - RTE.ie [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Uber Is Becoming a Robotics Company, CEO Says - Yahoo News [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- 3Doodler's new kits help kids craft their own robots - Engadget - Engadget [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Magnetic Control Could Help Robots Navigate Inside Your Body - IEEE Spectrum [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Boston's new hub, MassRobotics, is like a WeWork for robotics startups - TechCrunch [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- 3Doodler announces a robotics kit, Star Trek and Powerpuff Girls ... - TechCrunch [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- Chart: Are Robots Replacing High-Cost Workers? - Seeking Alpha [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]