Started By
Message

re: LA State Computers Hacked (Confirmed)

Posted on 11/18/19 at 7:58 pm to
Posted by FieldEngineer
Member since Jan 2015
2540 posts
Posted on 11/18/19 at 7:58 pm to
quote:

There's absolutely NOTHING in the state's IT department that touches the state's election system. Even the Secretary of State's own IT department has nothing to do with the election systems. It's completely air-gapped in terms of connectivity and people.


Is that publicly documented somewhere?

Anyway, airgapping is a great defense against external threats, but not the end-all-be-all answer since so many threats are internal. All it takes is some lazy employee not following protocol to compromise an air-gapped network. There are also more sophisticated attack techniques out there.

https://hackaday.com/tag/air-gap/
This post was edited on 11/18/19 at 7:59 pm
Posted by theunknownknight
Baton Rouge
Member since Sep 2005
60048 posts
Posted on 11/18/19 at 8:03 pm to
Yea it's like these IT guys don't realize how the worst hacks work - from the inside

The conspiracy would be an inside hack that bypassed the external securities
Posted by BeepNode
Lafayette
Member since Feb 2014
10005 posts
Posted on 11/18/19 at 8:08 pm to
quote:

Is that publicly documented somewhere?


I have no idea. I guess I'm documenting it now?

quote:

Anyway, airgapping is a great defense against external threats, but not the end-all-be-all answer since so many threats are internal. All it takes is some lazy employee not following protocol to compromise an air-gapped network.


You're moving the goal posts. We're talking about if the connection between the hack and the election systems. There is no connection. They don't share employees or hardware.

Posted by theunknownknight
Baton Rouge
Member since Sep 2005
60048 posts
Posted on 11/18/19 at 8:11 pm to
Umm there is always a connection, even if it's not obvious (especially if we are talking internal). I'm going to dismiss any IT guy that tells me that point blank.
Posted by BeepNode
Lafayette
Member since Feb 2014
10005 posts
Posted on 11/18/19 at 8:27 pm to
quote:

Umm there is always a connection, even if it's not obvious (especially if we are talking internal). I'm going to dismiss any IT guy that tells me that point blank.


I'm telling you point blank that these hacked la.gov systems are no more connected to the election system than your home computer is. This is a fact. It may not be the juicy conspiracy theory you want to hear, but it's the truth.

You seem to think some unraveling is about to happen, and I'm trying to let you down gently. :) The state will restore from backups and everything will be just as it were on Saturday, plus new security protocols. I'm guessing a lot of admins will lose some privileges and they will break up some of the larger Active Directory forests into smaller forests.

People will also be suspicious when Dickie gets replaced soon, but Dickie is already retired and a new CIO was already in the works.
This post was edited on 11/18/19 at 8:30 pm
Posted by theunknownknight
Baton Rouge
Member since Sep 2005
60048 posts
Posted on 11/18/19 at 8:29 pm to
quote:

I'm telling you point blank that these hacked la.gov systems are no more connected to the election system than your home computer is. This is a fact. It may not be the juicy conspiracy theory you want to hear, but it's the truth.




So they are connected. If you can get to a port you can anchor the boat.


ETA:

quote:

People will also be suspicious when Dickie gets replaced soon, but Dickie is already retired and a new CIO was already in the works.


CONVENIENT
This post was edited on 11/18/19 at 8:31 pm
Posted by Motorboat
At the camp
Member since Oct 2007
23890 posts
Posted on 11/18/19 at 8:30 pm to
IT nerd fight!!!
Posted by OysterPoBoy
City of St. George
Member since Jul 2013
42713 posts
Posted on 11/18/19 at 8:30 pm to
This whole thing reeks of collusion between JBE and some foreign entity.
Posted by theunknownknight
Baton Rouge
Member since Sep 2005
60048 posts
Posted on 11/18/19 at 8:31 pm to
Thinking Ukranian Russian hybrids
Posted by scottfruget
Member since Nov 2010
3392 posts
Posted on 11/18/19 at 8:31 pm to
It’s never the nefarious truth of big government coverup

This post was edited on 11/18/19 at 8:33 pm
Posted by BRgetthenet
Member since Oct 2011
118227 posts
Posted on 11/18/19 at 8:31 pm to
Is this the same deal as what happened in Tangipahoa Parish, EBR, and one other school system, back in August?
Posted by hashtag
Comfy, AF
Member since Aug 2005
32508 posts
Posted on 11/18/19 at 8:53 pm to
Livingston Parish had a similar issue. Things get hairy when random users end up with Administrator access on their PCs.
Posted by Hunter_H_Helmsley
Member since Feb 2019
112 posts
Posted on 11/18/19 at 9:17 pm to
Also, if malware is already in the servers that perform the allocation of votes around the state, then the gap doesn't even matter.

You could easily have state domain counting the votes anyway you see fit if your the domain admin. shite, if the servers are pwn'd you can have it put whatever you want on the display of vote tallying.

And the member of the executive board who would definitely have remote access in Active Directory has a fire at his fricken house the same day that the backups are allegedly gone?

The only way to destroy hard drive disks without looking nefarious(bullet holes, drilling holes in them) is a fricken fire. How convenient. And the same day the new backup system moves to AW fricken S too? The same fricken day. Which means they could say they just got rid of the old data and just started fresh.

If you believe this doesn't look planned to people who check for correct backup configurations, then wake up.

This post was edited on 11/18/19 at 9:17 pm
Posted by RougeDawg
Member since Jul 2016
7286 posts
Posted on 11/18/19 at 9:23 pm to
It is time for the Louisiana GOP's balls to drop and investigate.
Posted by FieldEngineer
Member since Jan 2015
2540 posts
Posted on 11/18/19 at 9:24 pm to
quote:

I have no idea. I guess I'm documenting it now?


"I have spoken."

quote:

You're moving the goal posts. We're talking about if the connection between the hack and the election systems. There is no connection. They don't share employees or hardware.


Nah, I wasn't suggesting that election systems were compromised. I was simply saying that air-gapping them is not a guarantee of security.
Posted by 3nOut
I don't really care, Margaret
Member since Jan 2013
31717 posts
Posted on 11/18/19 at 9:25 pm to
quote:

Louisiana just got hit with one of the most sophisticated Ransomware attacks around. The Shadow Kill Hackers are trying to extort the state with a amount of a rumored $20 million dollars


I work in security for k-12 with Texas and LA schools. Ransomware is a bitch right now and is hitting everybody.

I have a couple of customers that have been fired and one that quit and walked off the job site and had to be asked to come back in because a server with student data had been hit with ransomware.

Encrypt your hard drives, change your passwords, shite down c$ shares, and shut down over extending domain admin accounts.
Posted by LafTiger
Member since Dec 2008
1526 posts
Posted on 11/18/19 at 9:37 pm to
quote:

Ironically the election results website from SOS is down as well. Russian meddling in our elections. I demand an investigation.


I demand Impeachment!
Posted by LSUWoodworker
St George "God's Country "
Member since Dec 2007
18728 posts
Posted on 11/19/19 at 6:15 am to
Any updates this cool, autumn morning?
Posted by jdd48
Baton Rouge
Member since Jan 2012
23385 posts
Posted on 11/19/19 at 7:31 am to
quote:

shut down over extending domain admin accounts


And local admin rights, especially if the local admin password is the same across the domain. PTH is unfortunately still a real threat.
This post was edited on 11/19/19 at 7:35 am
Posted by KamaCausey_LSU
Member since Apr 2013
17018 posts
Posted on 11/19/19 at 8:36 am to
Still shut down. Guess I'll have to hand write this permit.

Also, I'm not sure where "workers were sent home" came from. Maybe hourly workers at the DMV and such. DoTD and DEQ had to stay and twiddle thumbs. Same thing today so far.
first pageprev pagePage 5 of 9Next pagelast page

Back to top
logoFollow TigerDroppings for LSU Football News
Follow us on X, Facebook and Instagram to get the latest updates on LSU Football and Recruiting.

FacebookXInstagram