Hacking Power Plants and Industrial Control Systems (Scada)
This is my second interview with the professional hacker Occupy The Web. In this video we discuss OSINT and hacking industrial control systems (ICS) using SCADA (supervisory control and data acquisition).
Jump to 33:40 for scada discussions.
Disclaimer: The opinions expressed by Occupy The Web in this interview are his own.
// MENU //
00:00 ▶️ Introduction
00:41 ▶️ Disclaimer
00:46 ▶️ Intro With OccupyTheWeb
01:30 ▶️ Ukraine Web Cam Hacking
03:55 ▶️ Finding Russian Superyachts With OSINT
05:47 ▶️ Why Track Russian Superyachts?
09:10 ▶️ Russian Oligarchs
10:54 ▶️ The YouTube Comments/OccupyTheWeb is Not CIA/NSA
12:37 ▶️ It's Not About the US
13:09 ▶️ Getting Started with OSINT and OSINT Tools
14:51 ▶️ OSINT As a Career
15:22 ▶️ Other Uses For OSINT
16:38 ▶️ OSINT Can Find Anything About Anybody
18:21 ▶️ Phones/How To Avoid Being Tracked
19:22 ▶️ Turning Off Your GPS Doesn't Stop Tracking
20:35 ▶️ Use a Burner Phone
23:30 ▶️ Tips To Stay Anonymous Online
26:36 ▶️ Different Physical Machine vs Virtual Machine for Privacy
28:08 ▶️ Cellphone Networks - IP Addresses
29:36 ▶️ Before We Talk About SCADA
33:49 ▶️ SCADA Hacking As The Nuclear Option
38:25 ▶️ Why Would It Be The Nuclear Option?
40:11 ▶️ SCADA Hacking Example/The Colonial Pipeline
42:13 ▶️ The Difference Between a Traditional IT System and a SCADA System
44:07 ▶️ SCADA Protocols
46:03 ▶️ SCADA Hacking Example/Stuxnet
49:06 ▶️ Why Are These Systems Connected To The Internet In The First Place?
51:52 ▶️ Almost All SCADA Systems Are Online
52:24 ▶️ How To Find SCADA Systems Online
56:51 ▶️ Why SCADA Attacks Aren't Simple
57:57 ▶️ But There Is Still A Huge Risk For SCADA Attacks
01:01:39 ▶️ How Companies Can Secure Their SCADA Systems
01:03:07 ▶️ People Don't Do What They're Supposed To Do
01:05:00 ▶️ Final Thoughts/Teaser For The Next Video With OccupyTheWeb
01:05:30 ▶️ Closing/Leave a Comment!
// OTW Discount //
Use the code BOMBAL to get a 20% discount off anything from OTW's website: https://davidbombal
Watch on YouTube ↗
(saves to browser)
Sign in to unlock AI tutor explanation · ⚡30
Playlist
Uploads from David Bombal · David Bombal · 0 of 60
← Previous
Next →
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
RYU SDN Controller Part 4: Graphical User Interface (GUI): Practical GNS3 SDN and OpenFlow
David Bombal
HPE Network Protector SDN Application Part 1 - Introduction
David Bombal
HPE Network Protector SDN Application Part 2 : DNS Interception using OpenFlow
David Bombal
HPE Network Protector SDN Application Part 3 - Lab Setup using Physical Switches
David Bombal
HPE Network Protector SDN Application Part 4 - Demo of malicious websites blocked
David Bombal
HPE Network Protector SDN Application Part 5 - Demo OpenFlow table interception flows
David Bombal
HPE Network Protector SDN Application Part 6 - Demo of Physical Switch configuration
David Bombal
HPE Network Protector SDN Application Part 7 - Demo Service Insertion Tunnel / GRE Tunnel
David Bombal
HPE Network Protector SDN Application Part 8 - Demo SDN OpenFlow Reporting
David Bombal
HPE Network Protector SDN Application Part 9 - Demo switches interception of DNS traffic
David Bombal
GNS3 Talks: GNS3 version 1.5.X Appliance Tips
David Bombal
CCNA 200-125 Exam: AAA demo: TACACS+ with GNS3
David Bombal
GNS3 2.0.0 beta 2 install
David Bombal
CCNA #012: Learn SNMP with GNS3, Wireshark and Solarwinds NPM - CCNA 200-125 exam
David Bombal
CCNA #013: Spanning Tree CCNA Exam Questions: Know the answer? CCNA 200-125 exam
David Bombal
GNS3 2.0.0 beta : GNS3 VM integration with GNS3 GUI
David Bombal
CCNA #018: Routing exam questions: Who wins? OSPF, EIGRP or RIP? Sure? CCNA 200-125 exam
David Bombal
CCNA #019: Spanning Tree CCNA Exam Questions: Root Bridge, Root Port and more: CCNA 200-125 exam
David Bombal
GNS3 Download, installation and configuration - GNS3 1.5.3 and Windows 10
David Bombal
CCNA #023 EIGRP Neighbor Troubleshooting (DUAL Issues) for the CCNA 200-125 Exam
David Bombal
GNS3 2.0 Architecture and schema Part 1: What is the GNS3 Controller?
David Bombal
GNS3 2.0 Architecture and schema Part 2: Emulators and virtualization
David Bombal
CCNA #028 VTP Troubleshooting for the CCNA 200-125 Exam
David Bombal
CCNA #029 VTP & DTP Troubleshooting for the CCNA 200-125 Exam
David Bombal
CCNA #030 VTP Troubleshooting for the CCNA 200-125 Exam
David Bombal
GNS3 : How to download Cisco IOS images and VIRL images. Which is the best? How do you get them?
David Bombal
GNS3 ASA setup: Import and configure Cisco ASAv with GNS3
David Bombal
GNS3 switching setup and options: Cisco and other switching options in GNS3
David Bombal
GNS3 switching setup and options Part 2: GNS3 unmanaged built-in switch
David Bombal
GNS3 switching setup and options Part 3: Router on a sick with GNS3 unmanaged built-in switch
David Bombal
GNS3 switching setup and options Part 4: Etherswitch Router for Cisco Dynamips Part 1
David Bombal
GNS3 switching setup and options Part 5: Etherswitch Router for Cisco Dynamips Part 2
David Bombal
GNS3 switching setup and options Part 6: Etherswitch, Wireshark, 802.1Q, InterVLAN routing
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 1: GNS3 Switching Part 7
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 2: GNS3 Switching Part 8
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 3: GNS3 Switching Part 9
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 4: GNS3 Switching Part 10
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 5: GNS3 Switching Part 11
David Bombal
GNS3 Nexus (NX-OSv) switch setup and configuration Part 1: GNS3 switching options Part 12
David Bombal
GNS3 Nexus (NX-OSv) switch setup and configuration Part 2: GNS3 switching options Part 13
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 6: GNS3 Switching Part 14
David Bombal
GNS3 Talks: Docker, Open vSwitch, SDN and OpenFlow Part 7: GNS3 Switching Part 15
David Bombal
GNS3 Cisco CSR 1000v setup and configuration Part 1: GNS3 NFV
David Bombal
GNS3 Cisco CSR 1000v setup and configuration Part 2: GNS3 NFV
David Bombal
GNS3 Talks: Use the NAT node to connect GNS3 to the Internet easily!
David Bombal
GNS3 Talks: GNS3 2.0 RC1 is now available
David Bombal
GNS3 Talks: GNS3 2.0 Portable Projects - easily export and import GNS3 projects
David Bombal
GNS3 Talks: Multiple clients sharing projects in real time, plus console session shadowing!
David Bombal
CCNA #035 NAT Troubleshooting Scenario 1 - Can you find the issue? CCNA Exam 200-125 troubleshooting
David Bombal
CCNA #036 NAT Troubleshooting Scenario 2 - Can you find the issue? CCNA Exam 200-125 troubleshooting
David Bombal
GNS3 Talks: ESXi, GNS3 VM and KVM support Part 1: leverage servers and the cloud
David Bombal
CCNA #037 OSPF Troubleshooting - can you find the issue? CCNA Exam 200-125 troubleshooting
David Bombal
GNS3 Talks: ESXi, GNS3 VM and KVM support Part 2: leverage servers and the cloud
David Bombal
CCNA #038 NAT Troubleshooting Scenario 3 - Can you find the issue? CCNA Exam 200-125 troubleshooting
David Bombal
CCNA #039 - OSPF DR, BR and DROTHER Election - do you know the answers?
David Bombal
CCNA #040 NAT Troubleshooting Scenario 4 - Can you find the issue? CCNA Exam 200-125 troubleshooting
David Bombal
GNS3 Talks: Arista vEOS GNS3 import and configuration Part 1
David Bombal
CCNA #041 - OSPF DR, BR and DROTHER Election - do you know the answers?
David Bombal
GNS3 Talks: Arista vEOS GNS3 import and configuration Part 2
David Bombal
GNS3 Talks: ipterm: Linux, Docker, Python, SDN and more! Part 1
David Bombal
More on: Security Basics
View skill →Related AI Lessons
⚡
⚡
⚡
⚡
Em cibersegurança, o serviço é o produto: minha atuação como Product Manager focada em Go-To-Market
Medium · Cybersecurity
CISA Admin Leaked AWS GovCloud Keys on Github
Krebs on Security
‘Reboot Your PC’—Microsoft Changes ‘Most Windows Devices’ In June
Forbes Innovation
My AI Security Runtime Burned Through Credits Faster Than the Vulnerabilities
Medium · DevOps
Chapters (35)
Introduction
0:41
Disclaimer
0:46
Intro With OccupyTheWeb
1:30
Ukraine Web Cam Hacking
3:55
Finding Russian Superyachts With OSINT
5:47
Why Track Russian Superyachts?
9:10
Russian Oligarchs
10:54
The YouTube Comments/OccupyTheWeb is Not CIA/NSA
12:37
It's Not About the US
13:09
Getting Started with OSINT and OSINT Tools
14:51
OSINT As a Career
15:22
Other Uses For OSINT
16:38
OSINT Can Find Anything About Anybody
18:21
Phones/How To Avoid Being Tracked
19:22
Turning Off Your GPS Doesn't Stop Tracking
20:35
Use a Burner Phone
23:30
Tips To Stay Anonymous Online
26:36
Different Physical Machine vs Virtual Machine for Privacy
28:08
Cellphone Networks - IP Addresses
29:36
Before We Talk About SCADA
33:49
SCADA Hacking As The Nuclear Option
38:25
Why Would It Be The Nuclear Option?
40:11
SCADA Hacking Example/The Colonial Pipeline
42:13
The Difference Between a Traditional IT System and a SCADA System
44:07
SCADA Protocols
46:03
SCADA Hacking Example/Stuxnet
49:06
Why Are These Systems Connected To The Internet In The First Place?
51:52
Almost All SCADA Systems Are Online
52:24
How To Find SCADA Systems Online
56:51
Why SCADA Attacks Aren't Simple
57:57
But There Is Still A Huge Risk For SCADA Attacks
1:01:39
How Companies Can Secure Their SCADA Systems
1:03:07
People Don't Do What They're Supposed To Do
1:05:00
Final Thoughts/Teaser For The Next Video With OccupyTheWeb
1:05:30
Closing/Leave a Comment!
🎓
Tutor Explanation
DeepCamp AI