Cyber Commander's HandbookThe global reliance on computers, networks and systems continues to grow. As our dependency grows so do the threats that target our military s Command, Control, Communications, Computers, Intelligence, Surveillance, Reconnaissance (C4ISR) systems as well as the operational components and electronic controls for our critical infrastructure. Over the past decade we have experienced a substantial rise in the complexity and sophistication of cyber attacks as well as a frightening increase in the impact of some of the attacks. Every computer is a potential cyber weapon waiting to be loaded and used by extremists, criminals, terrorists and rogue nation states. As the world becomes more and more dependent on computers and information technology, the greater the risk of cyber attacks. Government and military leaders now face this fact and our critical systems and infrastructure remain at great risk! This risk has made the ability to defend these critical systems and direct cyber attacks core capabilities required for the modern military. In the age of cyber conflict, leaders need to understand the weapons and strategies used to wage this rapidly evolving type of warfare. This handbook will provide the background needed to understand the new world of cyber warfare, define the tools and techniques for offensive and defensive action, and provide insight into the strategies behind building a dynamic and relevant cyber warfare capability.

Segurança e Defesa do Espaço Cibernético BrasileiroAos poucos, para enfrentar as necessidades de um mundo globalizado e tomado por redes de informação, o Estado brasileiro viu-se diante de uma série de fatores, em sua própria estrutura, que levou o país a criar uma estratégia, abrigando um modelo de articulação envolvendo todos os órgãos públicos em uma rede complexa, extensiva e intensiva. No livro, o autor comenta os principais passos que levaram o Estado brasileiro a acompanhar o que ocorre no espaço cibernético no país. Com uma linguagem acessível e informações preciosas e didáticas, o autor explica a evolução deste acompanhamento, partindo da sua percepção de que segurança e defesa do espaço cibernético brasileiro, até pouco tempo, não tinha um conjunto de ações e estratégias que validasse o compromisso do país com essa nova etapa de segurança das nações. O livro traz ainda as motivações de cada hacker e os mais diversos tipos de denominações para pessoas que se dedicam, de uma maneira ou de outra, a invadir soberanias institucionais. Raphael Mandarino é um dos primeiros pensadores brasileiros sobre o tema. A análise que desenvolveu neste livro é resultado de anos à frente de atividades que levaram o Brasil a ter um programa estratégico de segurança cibernética. Todo o esforço é para que as iniciativas de segurança da informação sejam uma ação integrada e não isolada.

Cyber Infrastructure ProtectionThe Internet, as well as other telecommunication networks and information systems, have become an integrated part of our daily lives, and our dependency upon their underlying infrastructure is ever-increasing. Unfortunately, as our dependency has grown, so have hostile attacks on the cyber infrastructure by network predators. The lack of security as a core element in the initial design of these information systems has made common desktop software, infrastructure services, and information networks increasingly vulnerable to continuous and innovative breakers of security. Worms, viruses, and spam are examples of attacks that cost the global economy billions of dollars in lost productivity. Sophisticated distributed denial of service (DDoS) attacks that use thousands of web robots (bots) on the Internet and telecommunications networks are on the rise. The ramifications of these attacks are clear: the potential for a devastating largescale network failure, service interruption, or the total unavailability of service. Yet many security programs are based solely on reactive measures, such as the patching of software or the detection of attacks that have already occurred, instead of proactive measures that prevent attacks in the first place. Most of the network security configurations are performed manually and require experts to monitor, tune security devices, and recover from attacks. On the other hand, attacks are getting more sophisticated and highly automated, which gives the attackers an advantage in this technology race. A key contribution of this book is that it provides an integrated view and a comprehensive framework of the various issues relating to cyber infrastructure protection. It covers not only strategy and policy issues, but it also covers social, legal, and technical aspects of cyber security as well. We strongly recommend this book for policymakers and researchers so that they may stay abreast of the latest research and develop a greater understanding of cyber security issues.

The Stuxnet Computer Worm: Harbinger of an Emerging Warfare Capability - CRS ReportIn September 2010, media reports emerged about a new form of cyber attack that appeared to target Iran, although the actual target, if any, is unknown. Through the use of thumb drives in computers that were not connected to the Internet, a malicious software program known as Stuxnet infected computer systems that were used to control the functioning of a nuclear power plant. Once inside the system, Stuxnet had the ability to degrade or destroy the software on which it operated. Although early reports focused on the impact on facilities in Iran, researchers discovered that the program had spread throughout multiple countries worldwide.

From the perspective of many national security and technology observers, the emergence of the Stuxnet worm is the type of risk that threatens to cause harm to many activities deemed critical to the basic functioning of modern society. The Stuxnet worm covertly attempts to identify and exploit equipment that controls a nation’s critical infrastructure. A successful attack by a software application such as the Stuxnet worm could result in manipulation of control system code to the point of inoperability or long-term damage. Should such an incident occur, recovery from the damage to the computer systems programmed to monitor and manage a facility and the physical equipment producing goods or services could be significantly delayed. Depending on the severity of the attack, the interconnected nature of the affected critical infrastructure facilities, and government preparation and response plans, entities and individuals relying on these facilities could be without life sustaining or comforting services for a long period of time. The resulting damage to the nation’s critical infrastructure could threaten many aspects of life, including the government’s ability to safeguard national security interests.

Iranian officials have claimed that Stuxnet caused only minor damage to its nuclear program, yet the potential impact of this type of malicious software could be far-reaching. The discovery of the Stuxnet worm has raised several issues for Congress, including the effect on national security, what the government’s response should be, whether an international treaty to curb the use of malicious software is necessary, and how such a treaty could be implemented. Congress may also consider the government’s role in protecting critical infrastructure and whether new authorities may be required for oversight.

The Third Industrial Revolution: How Lateral Power Is Transforming Energy, the Economy, and the WorldThe Industrial Revolution, powered by oil and other fossil fuels, is spiraling into a dangerous endgame. The price of gas and food are climbing, unemployment remains high, the housing market has tanked, consumer and government debt is soaring, and the recovery is slowing. Facing the prospect of a second collapse of the global economy, humanity is desperate for a sustainable economic game plan to take us into the future.

Here, Jeremy Rifkin explores how Internet technology and renewable energy are merging to create a powerful “Third Industrial Revolution.” He asks us to imagine hundreds of millions of people producing their own green energy in their homes, offices, and factories, and sharing it with each other in an “energy internet,” just like we now create and share information online.

Rifkin describes how the five-pillars of the Third Industrial Revolution will create thousands of businesses, millions of jobs, and usher in a fundamental reordering of human relationships, from hierarchical to lateral power, that will impact the way we conduct commerce, govern society, educate our children, and engage in civic life.

Rifkin’s vision is already gaining traction in the international community. The European Union Parliament has issued a formal declaration calling for its implementation, and other nations in Asia, Africa, and the Americas, are quickly preparing their own initiatives for transitioning into the new economic paradigm.

The Third Industrial Revolution is an insider’s account of the next great economic era, including a look into the personalities and players — heads of state, global CEOs, social entrepreneurs, and NGOs — who are pioneering its implementation around the world.

