It’s easy to get caught up in the hype around who might be attacking organizations and why, which leads to misconceptions about the requirements and costs associated with effective security. Companies should also be looking at it from the attacker’s viewpoint, trying to identify what there is to steal and how to go about it. McAfee’s David Marcus discussed at length how hackers can leverage open source intelligence (OSINT) as a means to gain insight into an organizations’ infrastructure, technologies and operations. Marcus described how these same methods could be used to attack the seemingly forever-vulnerable SCADA systems.”]

