The London Olympics faced six major cyber attacks during the Games out of some 165 million individual security-related "events" identified by the IT team put together by Gary Pennell, the CIO of the London 2012 Olympics.
"There were 165 million security-related events. Most of those, let's be clear, were trivial - password changes, logon failures and things of that nature," said Pennell. "But there were 97 actual security incidents that got raised to my technology operations centre... [And] only six made it to the top, to me as CIO responsible for the technology of the Olympics."
Pennell was speaking at the Inside Government conference, "UK Cyber Security: Protecting our National Infrastructure".
The serious attacks kicked off the day before the Olympics, on 26 July, said Pennell, when the IT infrastructure was probed for some 10 minutes by, believes Pennell, a high-profile group of hackers based in Eastern Europe who have a track record of analysing high-profile websites for vulnerabilities and then publishing them.
"They didn't find anything, nothing was published and they went away and we never saw that again," said Pennell.
On the 27th - the day of the opening ceremony - there was reportedly an attack on the power systems in the Olympic Park. "At 5pm that evening, that's when we had probably our most serious attack in terms of a denial of service attack. That lasted for 40 minutes, 10 million requests coming from 90 IP addresses across North America and Europe," said Pennell.
"It was one of those attacks where everything was synchronised time-wise. It was clearly an automated attack, not an amateur attack where multiple people try to attack the same website at the same time. So it looked like a botnet-style attack."
Six major attacks out of 165 million 'security events' identifiedHowever, that attack was handled at the edge of the network and the impact was zero. "Again, we never heard any more from them," he added.
The next day, the "hacktivists" woke up and published a number of adverts online urging their community to "#letthegamesbegin". The community was publicly urging hacktivists via social media to mount denial of service attacks against the Olympics IT infrastructure at pre-determined times.
However, social media was being closely monitored and the attacks were therefore easy to deal with. "We were monitoring all social media as far as we could so that we could see that it was happening and we were ready with any responses that we needed to make," said Pennell. "In practice, it wasn't even detectable from a systems point-of-view and on my list, it didn't even count as an attack, only as a threat."
Indeed, the most damaging aspect of the hacktivists' efforts was their treatment of the Olympic Games' five-ring logo in their advertising. "It went on for four or five days, but never amounted to a hill of beans."
Send to KindleFurther reading Not every cloud has a silver lining
The pros & cons of outsourcing IT to Cloud Computing providers
The evolution of capacity
Choose – and choose wisely – the right MSP for your SMB
Preventing weaponised malware payloads in advanced persistent
Visitor commentsAdd commentscomments will appear here
Related articles ![]()
Scottish Widows offers interest-only
Scottish Widows Bank has added two interest-only products to its professional mortgage range.
![]()
Cyber security roundtable: The next steps for government
Lorem ipsum dolor sit amet, consectetur adipisicin quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat.
![]()
Britain clashes with EU over 'right to be forgotten' opt-out
Lorem ipsum dolor sit amet, consectetur adipisicin quis nostrud exercitation ullamco laboris.
![]()
Lorem ipsum dolor sit amet, consectetur adipisicing elit
Scottish Widows Bank has added two interest-only products to its professional mortgage range.
White papers Not every cloud has a silver lining
The pros & cons of outsourcing IT to Cloud Computing providers
The evolution of capacity
Choose – and choose wisely – the right MSP for your SMB
Preventing weaponised malware payloads in advanced persistent
Web Seminars & Events ![]()
UK Challenge Intelligent Sport UK Challenge 2013
Location: London, UK![]()
The new frontier: managing operational risk
Location: London, UK![]()
The new frontier: managing operational risk
Location: London, UKLatest Jobs C# ASP.Net Developer
Location: London, UKSalary: £50,000 - £60,000C# ASP.Net Developer is required by an Oldham based leading design agency. A fantastic opportunity to work for this outstanding law firm in Sheffield, who require a dynamic, user-focused web designer with creative and HTML coding skills to work across several websites and online projects.Technical Trainer (NHS/Health Informatics experience required
Location: London, UKSalary: £50,000 - £60,000My client is a large Financial Services company based in Exeter. They are currently looking for NAV accounting Manager to work across 3 different teams: real estsate, investment accounting and private equity/venture capital.Java Developer
Location: Brighton, UKSalary: £300 - £350 per dayThis role requires a proactive, self-motivated experienced Project Accountant who has the confidence and determination to challenge stakeholders and ensure that the financial implications of property decisions are robust and benefits are embedded within the business plans. The ability to be flexible in their approach to work, to adapt to varying work is an absolute must. Supporting a large project this will involve Financial Reporting, Analysis, data gathering and some modelling.