<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: tram]]></title>
    <link>http://securityratty.com/tag/tram</link>
    <description></description>
    <pubDate>Fri, 11 Jan 2008 17:33:14 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[The Continued Cheapening of the Word "Terrorism"]]></title>
      <link>http://securityratty.com/article/90f7c796906c3668bf0ec6572212a555</link>
      <guid>http://securityratty.com/article/90f7c796906c3668bf0ec6572212a555</guid>
      <description><![CDATA[Now labor strikes are terrorism : The Rail Tram and Bus Union (RTBU) said today it was planning a 24-hour strike by rail workers on July 17, the busiest day of the Catholic event. It is the day Pope...]]></description>
      <content:encoded><![CDATA[Now <a href="http://www.news.com.au/story/0,23599,23981698-421,00.html">labor strikes are terrorism</a>:

<blockquote>The Rail Tram and Bus Union (RTBU) said today it was planning a 24-hour strike by rail workers on July 17, the busiest day of the Catholic event.

It is the day Pope Benedict XVI will make his way through the streets of Sydney during the afternoon peak.

The NSW Government will take the matter to the Australian Industrial Relations Commission (AIRC) tomorrow.

Mr Iemma said his Government would not cave in to the RTBU.

"The Government will not be blackmailed into giving them what they want as a result of these industrial terror tactics," he said.</blockquote>

That's Morris Iemma, the Premier of New South Wales.

Terrorism is a heinous crime, and a serious international problem.  It's not a catchall word to describe anything you don't like or don't agree with, or even anything that adversely affects a large number of people.  By using the word more broadly than its actual meaning, we muddy the already complicated popular conceptions of the issue.  The word "terrorism" has a specific meaning, and we shouldn't debase it.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=BQ4vZJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=BQ4vZJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=FemcEJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=FemcEJ" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Tue, 08 Jul 2008 02:10:14 +0000</pubDate>
      <category domain="http://securityratty.com/tag/word">word</category>
      <category domain="http://securityratty.com/tag/terrorism">terrorism</category>
      <category domain="http://securityratty.com/tag/government">government</category>
      <category domain="http://securityratty.com/tag/catchall word">catchall word</category>
      <category domain="http://securityratty.com/tag/nsw government">nsw government</category>
      <category domain="http://securityratty.com/tag/morris iemma">morris iemma</category>
      <category domain="http://securityratty.com/tag/iemma">iemma</category>
      <category domain="http://securityratty.com/tag/industrial terror tactics">industrial terror tactics</category>
      <category domain="http://securityratty.com/tag/rail tram">rail tram</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/the_continued_c.html">The Continued Cheapening of the Word "Terrorism"</source>
    </item>
    <item>
      <title><![CDATA[Hacking Polish Trams]]></title>
      <link>http://securityratty.com/article/8deeacdd1f20189010294d40b0ece1a5</link>
      <guid>http://securityratty.com/article/8deeacdd1f20189010294d40b0ece1a5</guid>
      <description><![CDATA[A 14-year-old built a modified a TV remote control to switch trains on tracks in the Polish city of Lodz: Transport command and control systems are commonly designed by engineers with little exposure...]]></description>
      <content:encoded><![CDATA[<p>A 14-year-old built a modified a TV remote control to <a href="http://www.theregister.co.uk/2008/01/11/tram_hack/">switch trains</a> on tracks in the Polish city of Lodz:</p>

<blockquote>Transport command and control systems are commonly designed by engineers with little exposure or knowledge about security using commodity electronics and a little native wit. The apparent ease with which Lodz's tram network was hacked, even by these low standards, is still a bit of an eye opener.

<p>Problems with the signalling system on Lodz's tram network became apparent on Tuesday when a driver attempting to steer his vehicle to the right was involuntarily taken to the left. As a result the rear wagon of the train jumped the rails and collided with another passing tram. Transport staff immediately suspected outside interference.</blockquote></p>

<p>Here's <a href="http://www.cs.columbia.edu/~smb/blog/2008-01/2008-01-11.html">Steve Bellovin</a>:</p>

<blockquote>The device is described in the <a href="http://www.telegraph.co.uk/news/main.jhtml;jsessionid=Y5X3DLZOSFSAPQFIQMFSFFOAVCBQ0IV0?xml=/news/2008/01/11/wschool111.xml">original article</a> as a modified TV remote control. Presumably, this means that the points are normally controlled by IR signals; what he did was learn the coding and perhaps the light frequency and amplitude needed. This makes a lot of sense; it lets tram drivers control where their trains go, rather than relying on an automated system or some such. Indeed, the article notes "a city tram driver tried to steer his vehicle to the right, but found himself helpless to stop it swerving to the left instead."</blockquote>

<p>The lesson here is that security by obscurity, combined with physical security of the equipment, wasn't enough.  This kid jumped whatever fences there were, and reverse-engineered the IR control protocol.  Then he was able to play "trains" with real trains.</p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=WHn9xkD"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=WHn9xkD" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=T6SIWJD"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=T6SIWJD" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=BWO5BMD"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=BWO5BMD" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Thu, 17 Jan 2008 12:43:06 +0000</pubDate>
      <category domain="http://securityratty.com/tag/city tram driver">city tram driver</category>
      <category domain="http://securityratty.com/tag/driver">driver</category>
      <category domain="http://securityratty.com/tag/tram">tram</category>
      <category domain="http://securityratty.com/tag/tram drivers control">tram drivers control</category>
      <category domain="http://securityratty.com/tag/tv remote control">tv remote control</category>
      <category domain="http://securityratty.com/tag/trains">trains</category>
      <category domain="http://securityratty.com/tag/real trains">real trains</category>
      <category domain="http://securityratty.com/tag/tram network">tram network</category>
      <category domain="http://securityratty.com/tag/physical security">physical security</category>
      <source url="http://www.schneier.com/blog/archives/2008/01/hacking_the_pol.html">Hacking Polish Trams</source>
    </item>
    <item>
      <title><![CDATA[Unencrypted/Unauthenticated Wireless Control Systems Are a Very Bad Idea]]></title>
      <link>http://securityratty.com/article/26a59ad6f3f631263536fbed1d55a2f9</link>
      <guid>http://securityratty.com/article/26a59ad6f3f631263536fbed1d55a2f9</guid>
      <description><![CDATA[A Polish teenager derailed a tram after building his own remote control to hack the control system. Best quote
Transport command and control systems are commonly designed by engineers with little...]]></description>
      <content:encoded><![CDATA[<p>A <a href="http://www.theregister.co.uk/2008/01/11/tram_hack/print.html">Polish teenager derailed a tram</a> after building his own remote control to hack the control system. Best quote:</p>
<blockquote><p>&#8220;Transport command and control systems are commonly designed by engineers with little exposure or knowledge about security using commodity electronics and a little native wit.&#8221;</p></blockquote>
]]></content:encoded>
      <pubDate>Fri, 11 Jan 2008 17:33:14 +0000</pubDate>
      <category domain="http://securityratty.com/tag/control systems">control systems</category>
      <category domain="http://securityratty.com/tag/control system">control system</category>
      <category domain="http://securityratty.com/tag/remote control">remote control</category>
      <category domain="http://securityratty.com/tag/polish teenager">polish teenager</category>
      <category domain="http://securityratty.com/tag/transport command">transport command</category>
      <category domain="http://securityratty.com/tag/native wit">native wit</category>
      <category domain="http://securityratty.com/tag/commodity electronics">commodity electronics</category>
      <category domain="http://securityratty.com/tag/knowledge">knowledge</category>
      <category domain="http://securityratty.com/tag/exposure">exposure</category>
      <source url="http://www.veracode.com/blog/?p=75">Unencrypted/Unauthenticated Wireless Control Systems Are a Very Bad Idea</source>
    </item>
  </channel>
</rss>
