Originally Posted By: raptor
As far as attacks like this are concerned, it never ceases to amaze me why computers that control the important/critical hardware are somehow connected to the Internet and/or are used without strong security measures. They should be isolated as much as possible.

Edit: chickenlittle beat me to it.


Where I work we use a siemens computer and PLC system to controll all the plant and equipment in a large office building. Nothing like as critical as a nuclear facility, but data loss or programme corruption could lead to substantial monetary loss.
The computer in qustion is used for all sorts of other purposes, including internet access.
This is called "value engineering" since it saves buying a second PC which would be a cause of serious financial hardship to a multi million pound business.
The password is written on the wall next to it !