8/24/2026 at 2:09:25 PM
Sadly, the real lesson we need to learn from Battlestar Galactica is not this. They weren't saved by old software, they were saved by not having critical systems on the network unnecessarily.Our water and power utilities need to re-watch the pilot.
by chrisvls
8/24/2026 at 2:12:05 PM
To be fair, it was both. Those ships that got the recent upgrades also got trojans that Caprica Six put in the defense mainframe with Baltar's access codes.by fhdkweig
8/24/2026 at 2:20:57 PM
[flagged]by fdgfdvf
8/24/2026 at 3:25:21 PM
Why are our water and power utilities connected to the internet? Is it so that the employees controlling them can work from home? If so they are accepting too much risk relative to the benefit.by flowerlad
8/24/2026 at 6:37:14 PM
Because other replies aren't really stating it explicitly, let me add...The water and power utilities are themselves large distributed systems. They need communications between elements just to function properly. They don't exist in a single location where people can go locally manage them in some air-gapped, offline fashion.
There is no option of not having a communication network to monitor and manage these geographically distributed elements. The question is which communication network you would use, and how you would secure it. Whether it is telephones, radio links, or people running around as messengers, it is still a communications network.
Will some "dedicated" network be any safer? If anything, I imagine the fantasy of a private network will lead to even less security. You cannot physically secure the entire signal path. You really need to treat it as untrusted and build your security on top with encryption, authentication, authorization, etc.
by saltcured
8/25/2026 at 2:40:07 AM
> You really need to treat it as untrusted and build your security on top with encryption, authentication, authorization, etcInfrastructure usually has a long lifetime.
Things become much more vulnerable as time rolls on e.g. we should be worried about AI hacking of smart meter firmware (hard to secure and expensive to upgrade).
Today's secure system is tomorrow's insecure system. E.g. https://news.ycombinator.com/item?id=49413320 :
Finally, I poked at something that wasn’t connected over USB but WiFi instead, the Elgato Key Light Mini. This one turned out to be way more interesting than I expected: it’s the only one with meaningful firmware integrity protection.
Unfortunately, while that’s an improvement over all of the other devices we’ve looked at, it protects the firmware at exactly one point in time: when an update is happening. It’s not a boot time check enforced by the bootloader or any other kind of secure boot scheme, and the updater happens to be running while everything else in the device is still operating, meaning there’s huge attack surface to try to disable that signature validation. I asked Claude to look for an exploit that might enable this, and it found a doozy
by robocat
8/24/2026 at 11:36:12 PM
That explains why they are networked, not why internet access is required.The problem of secure networking has been solved long ago but there is no incentive for OT solution architects to get it right.
by burger
8/24/2026 at 3:27:18 PM
It makes sense to have them connected for a lot of reasons.by bluedino
8/24/2026 at 3:30:00 PM
which reasons?by symfrog
8/24/2026 at 5:01:42 PM
In addition to remote monitoring, central control over large systems clearly has benefits: quickly and automatically spinning up a power generation in one location in response to an outage or just increased demand in another one, or conversely spooling down generation in response to a large demand spike going away (many factories need to notify the grid before starting up or shutting down), shutting down water/gas flow upstream of a detected leak, or yes, working from home, which lots of people here regularly argue is a good thing.You could absolutely make the case that it isn't worth the risk, but that isn't the same as not having benefits.
by delecti
8/24/2026 at 3:31:55 PM
Remote monitoring is one of them presumablyby fishfasell
8/24/2026 at 4:03:57 PM
But is it completely impossible to separate the monitoring and equipment/management?Stupid example like the equipment itself is not networked, but you could watch via a webcam and/or get metrics via image recognition.
Maybe it's safer just to have somebody work the night shift.
by doubled112
8/24/2026 at 4:18:40 PM
No, and it's not strictly impossible to correctly build out a SOC / SIEM and ingest all the logs you want and pay for the right engineers to make sure it all works correctly. But damned if anyone manages to do a great job in this area. It's too complex and too expensive, so almost everyone settles for "best effort."A lot of problems are easy conceptually, but we can't manage to tackle them.
by everdrive
8/24/2026 at 4:18:19 PM
think about a grid responding to demand. The old model (like the titanic) had a remote manager phoning the site lead who phoned the control room who phoned the engineering room.Remote management has clear benefits, don’t be obtuse. I totally agree on the security risks, but the benefits are obvious.
by tonymet
8/24/2026 at 4:44:27 PM
I'm not seeing why it has to be connected to the internet. Make it a private, air-gapped intranet for all (or most) of the benefits of being "connected", but with no entry point for someone sitting on another continent to turn off the water.by mrngld
8/24/2026 at 4:55:44 PM
mostly, because setting up a separate network is harder.a virtual network built upon the regular internet is much easier.
And yes, mostly done wrong
by yehoshuapw
8/24/2026 at 7:19:05 PM
I’m glad you raised this point. What are some of the better VPNs you’ve seen for secure industrial .I asked because of books I had read about the bad ones, where unsecured industrial control protocols were exposed wirelessly , or via vpns. And I’ve been curious if any good ones are out there .
by tonymet
8/24/2026 at 7:11:36 PM
Are you talking about the media layer or the application layer? What would be the alternative to using the internet media layer? Every utility running their own private media ? So a duplicate network of media, as broad physically as the internet, that’s not connected to the internet? That hackers could tap into, and with poorer security, because it wouldn’t be constantly probed.by tonymet
8/24/2026 at 4:52:23 PM
Sounds like a good application of mesh networks.by goodthink
8/24/2026 at 11:09:56 PM
"They weren't saved by old software, they were saved by not having critical systems on the network unnecessarily.""Modern" software unnecessarily includes and routinely unnecessarily forces network connectivity
Perhaps they were saved by an old mindset
Doing some reading over at textfiles.com can reveal how cautious people were in the 1990's about connecting to the internet
by 1vuio0pswjnm7
8/24/2026 at 3:36:30 PM
The point is NOT older, rather decentralized!From a efficiency perspective centralized anything seems better at first glance, however decentralized anything just seems more resilient in the long run like nature and/or our universe.
by polycancel
8/24/2026 at 4:59:35 PM
> the real lesson we need to learn from Battlestar GalacticaIt's the same lesson that we can learn from Star Trek, Star Wars, and all the other self-aggrandising lore that humanity concocts when gazing lovingly in the mirror.
There is no greater enemy than greedy, barbaric humanity itself.
by heresie-dabord
8/24/2026 at 5:28:33 PM
They're good lessons, so why insult it? Why mock quality storytelling that makes good impressions on people?by unethical_ban