The United States Department of Defense is one of the largest consumers of Microsoft’s Windows family of operating systems. There are certainly a small number of organizations with a larger install base, but definitely not one as distributed, inter-connected and solely dependent upon Windows to complete just about every facet of work accomplished. The reliance solely on Windows, from the end-user workstation to the back-end server farm, is a huge risk which DoD has shown no desire to mitigate.
There are a staggering number of workstations required for the warfighters throughout DoD. Approximately 95% of these systems are WinTel, with only a very small number being Unix based. However, even the Unix based workstations are merely virtual Windows sessions – although the host OS is Unix, the user is performing all work within Windows!
The reliance on Windows is the single biggest weakness in the DoD information assurance strategy. Our adversaries know what we run and use that knowledge to craft specific attacks aimed directly at Windows. The Windows family of operating systems are riddled with vulnerabilities if not properly maintained – this delicate foundation has allowed attackers to compromise DoD networks at-will.
Continue
Recent Comments