Showing posts with label President of the United States. Show all posts
Showing posts with label President of the United States. Show all posts

Monday, January 08, 2018

ONE ON ONE - Joe Biden Interview and "Promise me, Dad"

IMHO:  Joe Biden, one of the last 'decent' citizen politicians.

"Joe Biden condemns Trump’s handling of North Korea, hasn’t ruled out 2020" PBS NewsHour 1/4/2018

Excerpt

SUMMARY:  In a wide-ranging interview with PBS NewsHour's Judy Woodruff, former Vice President Joe Biden said he believes the U.S. is closer than ever to nuclear war, adding President Trump "undermines" the office of the President.  He also talks about his latest book, "Promise me, Dad," which chronicles his son Beau's brain cancer diagnosis and death, and his own decision not to run for President in 2016.



Thursday, December 28, 2017

Monday, August 28, 2017

AMERICA - The Real Nuclear Option

"Can the President launch a nuclear strike on his own?" PBS NewsHour 8/24/2017

Excerpt

SUMMARY:  There are many checks and balances built into the elaborate system to control America's nuclear weapons -- except when it comes to the sole decision-making of the President of the United States.  Judy Woodruff speaks with Peter Feaver of Duke University about the procedures for controlling the U.S. arsenal and who else is in the chain of command.

Thursday, May 18, 2017

NATIONAL SECURITY - Trump Properties Vulnerable

QUESTION:  Where is Homeland Security and the Secret Service in all this?  Are they not protecting a President against this?!

"Any Half-Decent Hacker Could Break Into Mar-a-Lago" by Jeff Larson and Julia Angwin (ProPublica) and Surya Mattu, (Gizmodo), ProPublica 5/18/2017

We tested internet security at four Trump properties.  It's not good.

This story was co-published with Gizmodo.

Two weeks ago, on a sparkling spring morning, we went trawling along Florida's coastal waterway.  But not for fish.

We parked a 17-foot motor boat in a lagoon about 800 feet from the back lawn of The Mar-a-Lago Club in Palm Beach and pointed a 2-foot wireless antenna that resembled a potato gun toward the club.  Within a minute, we spotted three weakly encrypted WiFi networks.  We could have hacked them in less than five minutes, but we refrained.

A few days later, we drove through the grounds of the Trump National Golf Club in Bedminster, New Jersey, with the same antenna and aimed it at the clubhouse.  We identified two open WiFi networks that anyone could join without a password.  We resisted the temptation.

We have also visited two of President Donald Trump's other family-run retreats, the Trump International Hotel in Washington, D.C., and a golf club in Sterling, Virginia.  Our inspections found weak and open WiFi networks, wireless printers without passwords, servers with outdated and vulnerable software, and unencrypted login pages to back-end databases containing sensitive information.

The risks posed by the lax security, experts say, go well beyond simple digital snooping.  Sophisticated attackers could take advantage of vulnerabilities in the WiFi networks to take over devices like computers or smart phones and use them to record conversations involving anyone on the premises.

“Those networks all have to be crawling with foreign intruders, not just ProPublica,” said Dave Aitel, chief executive officer of Immunity, Inc., a digital security company, when we told him what we found.

Security lapses are not uncommon in the hospitality industry, which — like most industries and government agencies — is under increasing attack from hackers.  But they are more worrisome in places where the President of the United States, heads of state and public officials regularly visit.

U.S. leaders can ill afford such vulnerabilities.  As both the U.S. and French presidential campaigns showed, hackers increasingly exploit weaknesses in internet security systems in an effort to influence elections and policy.  Last week, cyberattacks using software stolen from the National Security Agency paralyzed operations in at least a dozen countries, from Britain's National Health Service to Russia's Interior Ministry.

Since the election, Trump has hosted Chinese President Xi Jinping, Japanese Prime Minister Shinzo Abe and British politician Nigel Farage at his properties.  The cybersecurity issues we discovered could have allowed those diplomatic discussions — and other sensitive conversations at the properties — to be monitored by hackers.

The Trump Organization follows “cybersecurity best practices,” said spokeswoman Amanda Miller.  “Like virtually every other company these days, we are routinely targeted by cyberterrorists whose only focus is to inflict harm on great American businesses.  While we will not comment on specific security measures, we are confident in the steps we have taken to protect our business and safeguard our information.  Our teams work diligently to deploy best-in-class firewall and anti-vulnerability platforms with constant 24/7 monitoring.”

The White House did not respond to repeated requests for comment.

Trump properties have been hacked before.  Last year, the Trump hotel chain paid $50,000 to settle charges brought by the New York attorney general that it had not properly disclosed the loss of more than 70,000 credit card numbers and 302 Social Security numbers.  Prosecutors alleged that hotel credit card systems were “the target of a cyber-attack” due to poor security.  The company agreed to beef up its security; it's not clear if the vulnerabilities we found violate that agreement.  A spokesman for the New York attorney general declined comment.

Our experience also indicates that it's easy to gain physical access to Trump properties, at least when the President is not there.  As Politico has previously reported, Trump hotels and clubs are poorly guarded.  We drove a car past the front of Mar-a-Lago and parked a boat near its lawn.  We drove through the grounds of the Bedminster golf course and into the parking lot of the golf course in Sterling, Virginia.  No one questioned us.

Both President Obama and President Bush often vacationed at the more traditional presidential retreat, the military-run Camp David.  The computers and networks there and at the White House are run by the Defense Information Systems Agency.

In 2016, the military spent $64 million on maintaining the networks at the White House and Camp David, and more than $2 million on “defense solutions, personnel, techniques, and best practices to defend, detect, and mitigate cyber-based threats” from hacking those networks.

Even after spending millions of dollars on security, the White House admitted in 2015 that it was hacked by Russians.  After the hack, the White House replaced all its computer systems, according to a person familiar with the matter.  All staffers who work at the White House are told that “there are people who are actively watching what you are doing,” said Mikey Dickerson, who ran the U.S. Digital Service in the Obama administration.

By comparison, Mar-a-Lago budgeted $442,931 for security in 2016 — slightly more than double the $200,000 initiation fee for one new member.  The Trump Organization declined to say how much Mar-a-Lago spends specifically on digital security.  The club, last reported to have almost 500 members paying annual dues of $14,000 apiece, allotted $1,703,163 for all administration last year, according to documents filed in a lawsuit Trump brought against Palm Beach County in an effort to halt commercial flights from flying over Mar-a-Lago.  The lawsuit was dropped, but the FAA now restricts flights over the club when the President is there.

It is not clear whether Trump connects to the insecure networks while at his family's properties.  When he travels, the President is provided with portable secure communications equipment.  Trump tracked the military strike on a Syrian air base last month from a closed-door situation room at Mar-a-Lago with secure video equipment.

However, Trump has held sensitive meetings in public spaces at his properties.  Most famously, in February, he and the Japanese prime minister discussed a North Korean missile test on the Mar-a-Lago patio.  Over the course of that weekend in February, the President's Twitter account posted 21 tweets from an Android phone.  An analysis by an Android-focused website showed that Trump had used the same make of phone since 2015.  That phone is an older model that isn't approved by the NSA for classified use.

Photos of Trump and Abe taken by diners on that occasion prompted four Democratic senators to ask the Government Accountability Office to investigate whether electronic communications were secure at Mar-a-Lago.

In March, the GAO agreed to open an investigation.  Chuck Young, a spokesman for the office, said in an interview that the work was in “the early stages,” and did not offer an estimate for when the report would be completed.

So, we decided to test the cybersecurity of Trump's favorite hangouts ourselves.

Our first stop was Mar-a-Lago, a Trump country club in Palm Beach, Florida, where the President has spent most weekends since taking office.  Driving past the club, we picked up the signal for a WiFi-enabled combination printer and scanner that has been accessible since at least February 2016, according to a public WiFi database.

An open printer may sound innocuous, but it can be used by hackers for everything from capturing all the documents sent to the device to trying to infiltrate the entire network.

To prevent such attacks, the Defense Information Systems Agency, which secures the White House and other military networks, forbids installing printers that anyone can connect to from outside networks.  It also warns against using printers that do more than printing, such as faxing.  “If an attacker gains network access to one of these devices, a wide range of exploits may be possible,” the agency warns in its security guide.

We also were able to detect a misconfigured and unencrypted router, which could potentially provide a gateway for hackers.

To get a better line of sight, we rented a boat and piloted it to within sight of the club.  There, we picked up signals from the club's wireless networks, three of which were protected with a weak and outmoded form of encryption known as WEP.  In 2005, an FBI agent publicly broke this type of encryption in minutes.

By comparison, the military limits the signal strength of networks at places such as Camp David and the White House so that they are not reachable from a car driving by.  It also requires wireless networks to use the strongest available form of encryption.

From our desks in New York, we were also able to determine that the club's website hosts a database with an insecure login page that is not protected by standard internet encryption.  Login forms like this are considered a severe security risk, according to the Defense Information Systems Agency.

Without encryption, spies could eavesdrop on the network until a club employee logs in, and then steal his or her username and password.  They then could download a database that appears to include sensitive information on the club's members and their families, according to videos posted by the club's software provider.

This is “bad, very bad,” said Jeremiah Grossman, chief of Security Strategy for cybersecurity firm SentinelOne, when we described Mar-a-Lago's systems.  “I'd assume the data is already stolen and systems compromised.”

A few days later, we took our equipment to another Trump club in Bedminster, New Jersey.  During the transition, Trump had interviewed candidates for top administration positions there, including James Mattis, now secretary of defense.

We drove on a dirt access road through the middle of the golf course and spotted two open WiFi networks, TrumpMembers and WelcomeToTrumpNationalGolfClub, that did not require a password to join.

Such open networks allow anyone within range to scoop up all unencrypted internet activity taking place there, which could, on insecure sites, include usernames, passwords and emails.

Robert Graham, an Atlanta, Georgia, cybersecurity expert, said that hackers could use the open WiFi to remotely turn on the microphones and cameras of devices connected to the network.  “What you're describing is typical hotel security,” he said, but “it's pretty concerning” that an attacker could listen to sensitive national security conversations.

Two days after we visited the Bedminster club, Trump arrived for a weekend stay.

Then we visited the Trump International Hotel in Washington, D.C., where Trump often dines with his son-in-law and senior adviser Jared Kushner, whose responsibilities range from Middle East diplomacy to revamping the federal bureaucracy.  We surveyed the networks from a Starbucks in the hotel basement.

From there, we could tell there were two WiFi networks at the hotel protected with what's known as a captive portal.  These login screens are often used at airports and hotels to ensure that only paying customers can access the network.

However, we gained access to both networks just by typing “457” into the room number field.  Because we provided a room number, the system assumed we were guests.  We looked up the hotel's public IP address before logging off.

From our desks in New York, we could also tell that the hotel is using a server that is accessible from the public internet.  This server is running software that was released almost 13 years ago.

Finally, we visited the Trump National Golf Club in Sterling, Virginia, where the President sometimes plays golf.  From the parking lot, we recognized three encrypted wireless networks, an encrypted wireless phone and two printers with open WiFi access.

The Trump club websites are hosted by an Ohio-based company called Clubessential.  It offers everything from back-office management and member communications to tee time and room reservations.

In a 2014 presentation, a company sales director warned that the club industry as a whole is “too lax” in managing and protecting passwords.  There has been a “rising number of attacks on club websites over the last two years,” according to the presentation.  Clubessential “performed [an] audit of security in the club industry” and “found thousands of sensitive documents from clubs exposed on [the] Internet,” such as “lists of members and staff, and their contact info; board minutes, financial statements, etc.”

Still, the club software company has set up a backend server accessible on the internet, and configured its encryption incorrectly.  Anyone who reaches the login page is greeted with a warning that the encryption is broken.  In its documentation, the company advises club administrators to ignore these warnings and log in regardless.  That means that anybody snooping on the unprotected connection could intercept the administrators' passwords and gain access to the entire system.

The company also publishes online, without a password, many of the default settings and usernames for its software — essentially providing a roadmap for intruders.

Clubessential declined comment.

Aitel, the CEO of Immunity, said the problems at Trump properties would be difficult to fix: “Once you are at a low level of security it is hard to develop a secure network system.  You basically have to start over.”

Saturday, April 08, 2017

TRUMP - Incompetence

"The Coming Incompetence Crisis" by David Brooks, New York Times 4/7/2017

I just read that the Trump administration has filled only 22 of the 553 key positions that require Senate confirmation.  This makes me worry that the administration will not have enough manpower to produce the same volume and standard of incompetence that we've come to expect so far.

Granted, in its first few months the administration has produced an impressive amount of ineptitude with very few people.

On his worst days Sean Spicer can produce more errors than 10 normal men on their best days.  Kellyanne Conway can flail her way through television confrontations 24/7 and still have the stamina to lose to the Teletubbies on Saturday morning.

The White House staffing system is successfully answering the question, 'How many scorpions can you fit in a bottle?'  And in general, the personnel process has been so rigorous in its selection of inexperience that those who were hired on the basis of mere nepotism look like Dean Acheson by comparison.

But still, I worry that at the current pace the Trump administration is going to run out of failure.  So far, we've lived in a golden age of malfunction.  Every major Trump initiative has been blocked or has collapsed, relationships with Congress are disastrous, the President's approval ratings are at cataclysmic lows.

But can this last?  By midsummer, during the high vacation and indictment season, we could see empty hallways in the West Wing and a disorienting incompetence shortage emanating from Washington.

The executive branch could simply go dark.  CNN's ratings will plummet.  Columnists will wither and die.  Liberals will have to go without the delicious current of schadenfreude and their daily ritual baths of moral superiority.

Now I'm not underestimating the President's own capacity for carrying on in an incompetent manner almost indefinitely.  I don't think we've reached peak Trump.

The normal incompetent person flails and stammers and is embarrassed about it.  But the true genius at incompetence like our President flails and founders and is too incompetent to recognize his own incompetence.  He mistakes his catastrophes for successes and so accelerates his pace toward oblivion.  Those who ignore history are condemned to retweet it.

Trump's greatest achievements are in the field of ignorance.  Up until this period I had always thought of ignorance as a void, as an absence of knowledge.  But Trump's ignorance is not just an absence; it is a rich, intricate and entirely separate universe of negative information, a sort of fertile intellectual antimatter with its own gravitational pull.

It's not so much that he isn't well informed; it's that he is prodigiously learned in the sort of knowledge that doesn't accord with the facts of our current dimension.

It is in its own way a privilege to be alive at the same time as a man who is the Albert Einstein of confirmation bias, a man whose most impressive wall is the one between himself and evidence, a man who doesn't need to go off in search of enemies because he is already his own worst one.

But even Trump will eventually hit the limits of human endurance.  I know what it is like to be profoundly incompetent, and it is exhausting.

Just to take a small example by way of illustration, in the days before GPS I was (and remain) profoundly incompetent at comprehending driving directions.  I would ask for directions and all would start off normally: “Go down Fourth Street and take a right on Poplar.”

But then all would slide into a fog of incomprehensibility and I would keep nodding furiously to try to persuade the person that I could follow what was being said: “Then you toggle over that spur of the thruway that goes under the overpass before the six roundabouts of the gargle.”

By this time entire hemispheres of my brain had shut down, and as the person kept talking, my entire existence slipped into a catatonic mist: “After that it's just six wheedles up the perplex and after a quick stop at the bolint it's the 27th driveway on the right.”

The incompetent person in the Trump administration has to live in that stupor shroud every day.

So I hope the Trump team learns to delegate — carelessness in one office, backbiting in another.  I hope the president continues to play golf (I don't get those progressive critics who say Trump is ruining the world and then they complain because he takes time off).  I hope his team continues to take advantage of the fact that it takes only one inexperienced stooge to undo the accomplishments of 100 normal workers.

And I hope it continues to negatively surpass all expectations.  I remain a full-fledged member in the community of the agog.

One of the things I've learned about incompetence over the past few months is that it is radically nonlinear.  Competent people go in one of a few directions.  But incompetence is infinite.

The human imagination is not capacious enough to comprehend all the many ways the Trumpians can find to screw this thing up.

Friday, March 24, 2017

TRUMP - CEO Turned President


The problem with electing a CEO as President?

The government is NOT a business –– and we shouldn't run it like one.

Monday, January 16, 2017

POLITICS - 100 Days

"Why 100 days is a benchmark for Presidential performance" PBS NewsHour 1/15/2017

Excerpt

SUMMARY:  While a Presidential term lasts four years, the accomplishments of a president’s first 100 days have become the measure of a successful start.  The tradition, which dates back to Franklin D. Roosevelt’s presidency, has been extended to President-elect Donald Trump, who laid out a 100-day action plan in October.  NewsHour Weekend Special Correspondent Jeff Greenfield has more.

Monday, April 18, 2016

AGING ARSENAL - Who's at the Trigger

"Who's at the trigger when the President calls a nuclear strike" PBS NewsHour 4/13/2016

Excerpt

SUMMARY:  What would happen today if the President ever gave the order to unleash nuclear weapons?  Granted rare access to America's nuclear war fighters, veteran correspondent Jamie McIntyre on special assignment for the NewsHour profiles the people and the fleet that would carry out such a mission, then joins John Yang to discuss what he's learned about America's aging arsenal.

JUDY WOODRUFF (NewsHour):  Over the past eight months, we have aired three stories about America's aging nuclear arsenal.

Tonight, we thought we'd share with you some of the more interesting things we learned along the way.

John Yang has that.

JOHN YANG (NewsHour):  Our past stories looked at the debate over rebuilding America's nuclear submarines, missiles and bombs, now that much of the current arsenal is reaching the end of its service life.

And, tonight, to continue our unprecedented look behind the scenes, we meet some of the men and women charged with this great responsibility.

Veteran defense correspondent Jamie McIntyre reported these stories for us, in partnership with the Pulitzer Center on Crisis Reporting.

MAN:  All stations, all stations, this is absentee, absentee.

JAMIE MCINTYRE:  If the President ever gives the order to unleash nuclear weapons, the men and women whose fingers are on the triggers would hear something like this.

MAN:  Yankee, mike.  Stand by, uniform.

JAMIE MCINTYRE:  It's the sound of an emergency action message.  It's only a drill, but in a real-life situation, the highly encrypted message sent to bombers, submarines and missile crews would tell them which war plan to execute and which targets to destroy.

The coded message echoes, because it's sent by many different radios around the world, to ensure that even if the nation were under nuclear attack, at least one of the messages would get through.

The “NewsHour” was granted rare access to America's nuclear war fighters over the past six months.  At Minot Air Force base in North Dakota, we spent the day with the airmen who load the B-52 bombers and the crews that fly them.

Chief Master Sergeant Lee Robins is the wing weapons manager.

WATCH ALL THE STORIES IN OUR “AGING ARSENAL” SERIES:
  1.  How many ballistic missile submarines does the U.S. really need?
  2.  America's nuclear bomb gets a makeover
  3.  As Pentagon overhauls nuclear triad, critics advise caution