Category Archives: Security

The Hertfordshire oil depot investigation

The BBC report about this massive catastrophe starts off rather ominously:

The man in charge of investigating the massive fires at a Hertfordshire oil depot on Sunday says the flames may have destroyed all clues to the cause.

Further along it adds a bit more hope:

A police investigation into the incident has begun, including investigations by anti-terrorist police.
But Chief Con Whiteley said there was “nothing to suggest anything other than an accident”.

In a classic risk matrix the volatility and demand for petroleum is going to continue to add significant security costs. The value of the fuel has skyrocketed, the threats are clearly higher, and therefore the vulnerabilities must be addressed. In this case the vulnerability involved “20 petrol tanks…each said to hold three million gallons of fuel”. Even if you use the American fuel average price of US$2.50/gal that means US$150 million in fuel assets exposed, let alone the equipment value or the cost to the economy when the fuel supply is disrupted and the sky filled with toxic thick smoke.

Compare that to the almost inert properties of stored bio-diesel. Unlike many other forms of stored energy, the pollutive and combustive values of bio-diesel are incredibly low, which makes it a far safer fuel. My sense is that the military is already exploring this for obvious reasons (an ex-SF recently explained to me that the Humvees running bio-diesel are nowhere near as explosive since their fuel tanks can not be “weaponized” by IEDs). From a civilian market standpoint I have to wonder whether the petroleum companies will be able to find a way to reassure their respective governments that they are capable of resolving the inherent national security deficiencies of their industry. Will their record profits be spent on reducing the asset value (lowering the price), reducing the vulnerabilities (lower volatility, build giant fortresses around tanks), or can they help reduce the threats (ban smoking, help stabilize democracies, fund education)? How many people will face serious health risks from the burning petroleum?

We’re reaching a moment similar to when the mid-range systems started to steal cycles away from the highly profitable but totally unflexible mainframe, later to be replaced themselves with personal/distributed computing. Fuel production is ripe for the same sort of reorganization, with more widely distributed cells of production at lesser individual capacity providing a system more aligned with popular values….

The M1 is closed down

Edited to add:

    The BBC also reports that “The Buncefield depot is said to supply a third of the fuel for Heathrow. Some aircraft are only being allowed 40% of the fuel they would normally take on board and airport company BAA said restrictions could last some weeks.”

Stingray Firewall

This looks interesting. It claims to be a firewall for the masses. A single-button black box with nothing more than input/output to worry about (and pressing the button at the right time, I suppose). I have not seen any reliable test/verification data yet…

http://www.stingrayinc.com/products.htm

Stingray Features:

  • Hides IP address from intruders
  • Intelligent packet filtration
  • Full VPN pass-through
  • No computer resource usage
  • No configuration
  • No maintenance
  • No patches and upgrades required
  • Works on any computer or OS

EU ‘Patriot Act’ Passes

This was just posted on Yahoo! News. Apparently the UK was able to push an “anti-terror” agenda through the EU:

European Union lawmakers approved measures to allow police greater access to telephone and Internet data to help fight terrorism and serious crime in the 25-state bloc.

The measures would oblige businesses to keep details about callers, such as whom they spoke to, where and when, for between six months and two years. EU states with longer retention periods in place would be allowed to keep them.

The laws would apply to land telephone lines and mobile phones, text messages and Internet protocols. No record of the conversation or message itself would be kept.

EU countries would have the option of keeping information about unanswered calls, details of which proved decisive in the probe into the Madrid train bombings last year.

The conclusion raises a number of interesting questions:

Despite initial disagreement over the scope of the measures, the costs and who should pay them — companies or member states — and the duration of data retention, the deputies passed the measures by a clear majority.

Before the assembly convened in Strasbourg, the leaders of the main political groups had agreed to accept a series of late amendments compiled by EU justice ministers at the beginning of the month.

The author of the report on which the measures were based, liberal deputy Alexander Nuno Alvaro, was angered by the move and denounced what he said was “pressure” on the lawmakers.

He also demanded that his name be withdrawn from the final text.

What was the original text and what were the amendments? Why the rush?

Bittersweet Security

All the way north on the Island of Madagascar is a city named Ambanja. The E. Guittard company claims to produce a 65% cacao bittersweet with flavors from the region. If you believe their website, the bars are a product of Criollo beans from the fertile Sambirano Valley.

Personally, all I can say is that I found the Ambanja Bittersweet very dry and light in taste, and a stark contrast to Guittard’s Chucuri Bittersweet. The latter is apparently a Columbian bean, which I think has a far more smooth and spicy flavor with a rich and familiar aftertaste.

This all makes me wonder if the “unknown” method of distributing food will come under pressure from newer and better distribution methods for old-world and boutique-type brands.

Take for example the unpleasant situation when a restaurant tells you that ground beef can not be prepared “rare” because of a law meant to protect you from disease — bad beef. Someone should alert the big beef that automation can be counter-productive when it becomes overly efficient at promoting one value in spite of all the others. In fact I usually say I would pay more if I could get a hamburger that came right from the “trusted” local butcher because I know my body is happier when I eat better food. I guess I should find out if you can even have a local butcher, baker…

So although I truly appreciate the security control model provided by the US government to reign in the mass-automation meal industry I would much rather know that the origins of my meal could be traced and therefore controlled right at the root-causes. Come to think of it, how do I find out whether the beef industry has the same or better tolerance for risk that I do? Is their idea of “safe” one in 1,000,000 deaths or is it the big fat 0?

Consider for a second the BSE website, which was prominently advertised on the front page of the National Cattlemen’s Beef Association. It provides the following assurance:

U.S. beef producers have worked with federal authorities for more than 15 years to set up the system of science- based firewalls that is working today to keep the food supply safe.

Hmmm, last time I checked firewalls are a single control and thus widely considered insufficient on their own to provide adequate security. Not such a great marketing campaign, if you ask me. Alas, nothing else is mentioned although I found it interesting that the Cattlemen’s website also links to some anti-vegetarian propaganda.

I suspect that if a proper set of consumer-based controls were in place, they might be able to preserve “single-origin” (e.g. quality) values on a large scale, such that we would still have excellent flavor and texture along with desireable price. But until that happens, wise consumers seek out the small-batch and single-origin brands that are a healthier choice and more in tune with their real needs (better cost-benefit ratio).

Back to chocolate, I have to wonder, are you safer trying to stay on top of the additives in the giant brand chocolate bars, or are controls more likely to be present and effective with small-batch real cacao, cane sugar, lecithin and vanilla? And does fair-trade mean less chance of sabotage? Mmmm, chocolate.