iPhone app iPad app Android phone app Android tablet app More

WikiLeaks 101: Q&A With An Internet Security Expert

The Huffington Post   First Posted: 12/16/10 01:59 PM ET Updated: 05/25/11 07:20 PM ET

Computer

WikiLeaks has gone down, returned, gone down again, returned and other sites have been taken down by supporters of WikiLeaks like Visa.com.

From a technical standpoint, what is happening exactly and what will happen next in this ongoing cyberspace saga? HuffPost Tech asked SafeCentral CTO Ray Dickenson to help us break it all down based on his Internet security expertise.

Q: How can WikiLeaks withstand attacks against their site, and how might they propagate the sensitive information they're leaking?

Dickenson: They already are withstanding the attacks. There are many mirror sites where their content is available now. A list is available here: wikileaks.info.

Furthermore, the cablegate dataset has been released via bittorrent, which means it is being downloaded all over the world and then instantly made available from others to download from an ever-increasing number of computers.

The biggest impact right now is that the flagship site, wikileaks.org is being blocked. This only stops casual readers from browsing the content--casual readers who would not look around in more places. Really dedicated readers can still find the content.

Q: Can commercial websites withstand the attacks by pro-WikiLeaks supporters? What types of the threats are these commercial sites facing, and how do they protect themselves?

Dickenson: Yes, commercial sites can spend money to architect and implement resilient designs. These cost more money, require hosting in many locations on diverse networks, complicate the website management processes (it's harder to update a webpage on 30 different servers in 5 locations than on 4 servers in 2 locations), require network and server hosting contracts with multiple vendors and require more sophisticated monitoring and management infrastructure and the skilled engineers to go with it. Even so, hackers with medium level skills could still have an impact..temporary or limited to a geographic region, but still an impact.

Commercial sites have to consider every visitor a "casual reader" and expect them to be stopped cold if a wikileaks.org-style DNS blocking happened. So walmart.com cannot expect visitors to look for a list of mirror sites like wikileaks has created.

Q: Are government websites at risk of being attacked, and what is the threat level? Are government sites better prepared than these commercial sites?

Dickenson: Same answer as commercial sites. However, governments typically have more resources to throw at the hosting problem and also have law enforcement to back them up directly. Attacks on government websites could be considered a national security issue and thereby open up every channel of response, including FBI, Secret Service, Military and other organizations.

Q: What other kind of threats do consumers, and commercial or government entities face in terms of web-based attacks? What other tactics might be used by attackers?

Dickenson: Really dirty tricks could include putting up a fake wikileaks (or walmart) site and putting up disinformation or, even worse, malware that scares everyone away or infects their computers and make them susceptible to further exploitation. Further exploitation could include surveillance--that is, watching what these website visitors are doing on their computers.

Q: What might happen next?

Dickenson: Here is the thing: billions, maybe trillions, of dollars have been spent building and operating the Internet and its array of services that include content, email, payment processing, remote control. Most of this development is designed to make it easy for average people to connect with one another and get things done online. Bad guys take all that infrastructure, technology, software development tools and other resources and TURN THEM AGAINST US. When the latest Internet start-up like Facebook builds its systems it is primarily concerned with adding users and growing its business. Security is an exception..an additional cost..a headwind that slows growth. Something to take care of later. This means that creative, smart people with time on their hands and a willingness to do harm can get a lot done on the wide open Internet.

For example, large-scale attacks on individual citizens, exploiting their online lives through bank accounts, social networking, and professional networks, not seeking to steal money (which requires humans to receive payments and launder funds) but just to disrupt our connected lives. Anything that causes citizens to re-think how safe they are or how stable society is, could have significant impact on a nation, an economy, a large corporation or other large target.

FOLLOW HUFFPOST TECH

WikiLeaks has gone down, returned, gone down again, returned and other sites have been taken down by supporters of WikiLeaks ...
WikiLeaks has gone down, returned, gone down again, returned and other sites have been taken down by supporters of WikiLeaks ...
 
 
  • Comments
  • 433
  • Pending Comments
  • 0
  • View FAQ
Comments are closed for this entry
View All
Favorites
Recency  | 
Popularity
Page: 1 2 3 4 5  Next ›  Last »  (9 total)
10:16 PM on 01/13/2011
I thought Huffo readers were a bit smarter than that!
This user has chosen to opt out of the Badges program
01:30 PM on 12/19/2010
Thank you, HufPo, for this interesting, illuminating and timely article.
This user has chosen to opt out of the Badges program
photo
07:40 PM on 12/18/2010
THE SKY IS FALLING THE SKY IS FALLING!!
Effin propaganda.
photo
cambo
On the grand MN's side.
04:35 PM on 12/18/2010
Freedom of speech, freedom of anything is a joke. We were all born into a governed society - a tyranny and every tyrant will tell you that you need to be governed. Mainstream thinking is killing us all.
photo
HUFFPOST SUPER USER
glockman
09:22 AM on 12/19/2010
"and every tyrant will tell you that you need to be governed."

And apparently we don't seem to mind.
photo
HUFFPOST SUPER USER
heroine addict
habitual goddess worship
09:48 AM on 12/18/2010
One torrent to rule them all...
02:26 AM on 12/18/2010
Wow, I knew this in 1995
Hey, don't kid yourself. Corporations with deep pockets enlist the underground all the time to silence the vocal consumers who turn to blogs. Oh wait, they dont call it hacking then... its about protecting their brand...
photo
HUFFPOST SUPER USER
macrocosm
We are sorry your micro-bio did not meet our guide
06:59 PM on 12/17/2010
Anonymous have not attacked anything, its more akin to a Sit-In ... Read this to hear a logical representation of the facts.

http://www.guardian.co.uk/commentisfree/2010/dec/17/anonymous-wikileaks-protest-amazon-mastercard
03:13 PM on 12/17/2010
I like when they call us "consumers".
09:04 AM on 12/17/2010
Shame on you HP! If I had a newspaper to roll up, I'd whack you on the nose!
08:24 AM on 12/17/2010
The WikiLeak stories that would be a great starting for a organization that will know how exactly level of security policy and devices could protect their assets, Look at the bright side, more security devices will be purchased that keep IT company sudden growing up and I never lost my job anyway. :)
07:58 AM on 12/17/2010
I was going to suggest Anonymous take down FB and do the world a favor. Okay, do ME a favor! They I look up at the headlines and see FB is down. Weeeeee. Maybe there will be some productivity today.
HUFFPOST SUPER USER
melhol
07:21 AM on 12/17/2010
HP have some dignity and remove this article. You should be embarrassed.
photo
HUFFPOST SUPER USER
fishnetdiver
God hates facts!
07:10 AM on 12/17/2010
"'Large-Scale Attacks On Citizens' Could Be Next in WikiLeaks Saga "

usually have to go to Fox or Daily Mail for outragously misleading headlines like this.
nice bit of fearmongering there Huff_Po...
10:04 AM on 12/17/2010
Yeah. I come to HP to not read headlines such as this, but I guess not every headline will be palitable when visiting HP. Shame.
05:58 AM on 12/17/2010
With all due respect, this article is rubbish.
photo
HUFFPOST SUPER USER
fishnetdiver
God hates facts!
07:02 AM on 12/17/2010
totally agree. fearmongering and postulating...nothing more.
HUFFPOST SUPER USER
Eric Sarnoski
03:45 AM on 12/17/2010
Right wing propaganda doing its part to keep fear alive.
Wikileaks wasn't the threat .......it was the pro-wikileak hackers who attacked the servers.

The threat was always there. Now that corporate America got a wake up call perhaps they might finally spend the money to upgrade their security and do a better job of protecting their customers privacy and bank accounts.
HUFFPOST SUPER USER
William J Unverferth Sr
Snark attack.
09:50 AM on 12/17/2010
Pro and anti wikileak hackers are both threats to safety and security on the internet. Both are 100% wrong and stupid. I hope they are all caught and put in jail for long periods of time.
photo
HUFFPOST SUPER USER
Bright Creature
Crawling toward the light
08:48 PM on 12/17/2010
Any suggestions on how wikileaks can protect itself against the railroading they are getting now?
HUFFPOST SUPER USER
amber15
04:19 PM on 12/19/2010
perhaps we could start with all the liars masquerading as govt. officials pretending to 'secure' our borders while cheating & stealing from us and raking in millions while we the citizens applaud them because think we are so 'safe' we post anti-wikileaks comments to the world.