Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
The Matrix at 20: A Metaphor for Today's Cybersecurity Challenges
Newest First  |  Oldest First  |  Threaded View
alphadata
50%
50%
alphadata,
User Rank: Apprentice
4/27/2019 | 3:21:35 AM
Re: Wonderful, thoughtful essay
When The Matrix came out 20 years ago, the internet was still in its infancy, confined by the limits of dial-up modems, Netscape browsers and the startup discs that EarthLink and AOL tucked in mailboxes across the country. If you wanted to use the internet, you usually had to sacrifice your phone line, and those with constant busy signals were regarded as hopeless shut-ins, like a flannel-swathed

Sandra Bullock ordering a pie from Pizza-dot-net. To the extent that films were thinking about the possibilities of online life, they were usually defined by suspicion and terror, such as the VR corporate sabotage of Disclosure or sick allure of a chatroom IT security companies in dubai sadist in Dee Snider's StrangeLand. The landscape was changing, but all they could think to do was freak out and disconnect.
REISEN1955
50%
50%
REISEN1955,
User Rank: Ninja
4/8/2019 | 1:29:08 PM
Re: I think you got it backwards
The final battle in the last Matrix is definate ransomware attack or DDoS attack, more liikely the latter.  Flood of dangeroius packets. 

 
nhacailixi88
50%
50%
nhacailixi88,
User Rank: Apprentice
4/5/2019 | 10:45:16 PM
Re: I think you got it backwards
va
schopj
50%
50%
schopj,
User Rank: Strategist
4/5/2019 | 4:37:35 PM
I think you got it backwards
While I think this article is very well written and the analogies work quite well to illustrate your points, in the Matrix however, the computer references are the opposite of your analogies.  The crew of the Nebbakanezzer ARE the hackers.  The agents, are anti-virus platforms and remote admin tools.  Agent Smith, once decommissioned, becomes a self replicating virus as he rebels against the the system that discarded him.  You hit the nail on the head of the Oracle being the AI and Machine learning algorithms, but in the Matrix, Neo is the insider threat, or perhaps the vulnerability itself, the result of an unbalanced binary equation, the 1 that balances out the 0, that one bug that the developers just couldnt get rid of.  
REISEN1955
50%
50%
REISEN1955,
User Rank: Ninja
4/5/2019 | 12:38:39 PM
Wonderful, thoughtful essay
Your comments are spot-on and probable that more rules and comparisons exist in this series than touched upon, after all almost all cyber work involves a matrix of some kind or another.  Now, if we address IBM, eh, HAL9000 we come upon another variable: the computer system-network at self-fault.  That would be a writing task and as a reader " I have the greatest confidence in the mission." 


The Problem with Proprietary Testing: NSS Labs vs. CrowdStrike
Brian Monkman, Executive Director at NetSecOPEN,  7/19/2019
RDP Bug Takes New Approach to Host Compromise
Kelly Sheridan, Staff Editor, Dark Reading,  7/18/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
Building and Managing an IT Security Operations Program
As cyber threats grow, many organizations are building security operations centers (SOCs) to improve their defenses. In this Tech Digest you will learn tips on how to get the most out of a SOC in your organization - and what to do if you can't afford to build one.
Flash Poll
The State of IT Operations and Cybersecurity Operations
The State of IT Operations and Cybersecurity Operations
Your enterprise's cyber risk may depend upon the relationship between the IT team and the security team. Heres some insight on what's working and what isn't in the data center.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-14248
PUBLISHED: 2019-07-24
In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and nasm_set_limit when "%pragma limit" is mishandled.
CVE-2019-14249
PUBLISHED: 2019-07-24
dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by dwarfdump.
CVE-2019-14250
PUBLISHED: 2019-07-24
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a zero shstrndx value, leading to an integer overflow and resultant heap-based buffer overflow.
CVE-2019-14247
PUBLISHED: 2019-07-24
The scan() function in mad.c in mpg321 0.3.2 allows remote attackers to trigger an out-of-bounds write via a zero bitrate in an MP3 file.
CVE-2019-2873
PUBLISHED: 2019-07-23
Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are Prior to 5.2.32 and prior to 6.0.10. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox...