Asset Performance: The art of doing more with less

Credit to Author: John Boville| Date: Fri, 21 Jun 2019 12:13:02 +0000

Producing clean water and treating wastewater is a complex industrial process involving lots of different types of assets, for example pumps, sediment tanks, treatment units etc. Adding to the complexity is the fact that that these [units/assets] are often distributed over a wide area and are connected to the consumers through a large network infrastructure. For readers not closely familiar with operational aspects of water plants and networks, think about how the water gets to all the houses in your neighborhood). The task of monitoring everything to make sure it is running at peak efficiency is a rather daunting one – which water operation managers can confirm.

So, let’s pause for a minute and think about pumps located in remote locations which often consume large amounts of electrical power. How to ensure pumps will run at the correct speed to deliver water with the right pressure when you open your tap at home, considering that simultaneously hundreds of others in your neighborhood may be flushing toilets or taking showers?

To ensure consistent water delivery, high-powered pumps are often set to operate at greater speeds than needed – this is viewed as as a conservative approach which may use more energy and increases the stress to pipelines, but it beats the alternative.  Now, how does this affect maintenance? Bearings, impellers etc. wear out, that’s a fact of life. Ideally, they get replaced before the pump grinds to a halt, but can we know when that’s going to happen? Today this largely is a manual process, so either as things fail they get fixed, or at other times, units get replaced before they need to, in order to avoid failure later.

Digitize for efficiency and reliability

So how do some of today’s water suppliers up efficiency, use less energy, avoid leakage and breakdowns, and supply and treat the ever-increasing amounts of water needed to keep up with the trend in population growth? Another trend may offer some answers:  the Industrial Internet of Things (IIoT), which basically means that the control systems, sensors etc. behind all assets can be accessed and connected, securely, anytime and anywhere. For most of the water industry this could be a place to start looking for new ways to improve operations. Buried inside all the data, accessible because of this trend, it is very possible we can find some of the answers we need.

How to get started?

The first step is to make sure data is accessible – and there’s lots and lots of it! In its raw form it would be information overload, when using the right tools and analytics this ocean of data can be turned into actions to take and provide helpful [and new] insights into current operations.

I’m not talking about raw numbers here but about actual guidance to advise what to do and not to do, when to act to avoid failure or when to make tweaks to ensure error-free continuation of your process ensuring everything runs at peak efficiency.

The tools able to deliver this are referred to as ‘Advisors’; they distill business value from data and put IIoT technology to practical use in improving efficiency and reliability.

Get insights to those who can make a difference -when and where they need them

Today’s mobile and augmented reality technologies allow, for example, a worker in the field to simply point a tablet towards a pump to determine if there are any developing problems based on how it’s currently operating versus what’s normal or optimal.

Maintenance takes place only when it’s needed but always before a breakdown occurs.

Additionally, it’s possible to set pumps to run at outputs that closely match actual demand, and even to compare smart meter data with flow rates across the water network to diagnose leaks.

What’s the business benefit of asset performance? Two things according to ARC:

  • Insight driven prescriptive maintenance programs have the potential to reduce unplanned downtime to almost zero.
  • Making better use of maintenance resources by performing only needed maintenance and avoiding unplanned downtime can reduce MRO and labor costs by 50%

Want to know more? Don’t miss this whitepaper Realigning Water Industry Assets in Digitally-Enhanced Operation which outlines in a comprehensive way how to get started.

The post Asset Performance: The art of doing more with less appeared first on Schneider Electric Blog.

Iranian Hackers Launch a New US-Targeted Campaign as Tensions Mount

Credit to Author: Andy Greenberg| Date: Thu, 20 Jun 2019 22:09:35 +0000

When two countries begin to threaten war in 2019, it's a safe bet that they've already been hacking each other's networks. Right on schedule, three different cybersecurity firms now say they've watched Iran's hackers try to gain access to a wide array of US organizations over the past few weeks, just as military tensions between the two countries rise to a breaking point—though it's not yet clear whether those hacker intrusions are aimed at intelligence gathering, laying the groundwork for a more disruptive cyberattack, or both.

Analysts at two security firms, Crowdstrike and Dragos, tell WIRED that they've seen a new campaign of targeted phishing emails sent to a variety of US targets last week from a hacker group known by the names APT33, Magnallium, or Refined Kitten and widely believed to be working in the service of the Iranian government. Dragos named the Department of Energy and US national labs as some of the half-dozen targeted organizations. A third security firm, FireEye, independently confirmed that it's seen a broad Iranian phishing campaign targeting both government agencies and private sector companies in the US and Europe, without naming APT33 specifically. None of the companies had any knowledge of successful intrusions.

"Essentially, there have been many people targeted since these tensions increased," says John Hultquist, director of threat intelligence at FireEye. "We're not sure if it's intelligence collection, gathering information on the conflict, or if it's the most dire concern we’ve always had, which is preparation for an attack."

Some signs suggest the new targeting campaign is indeed a cyberespionage operation, an expected step from Iran given the rising saber-rattling between its government and that of the US—amid Iran's claim to have downed a US drone that breached its airspace and the Trump administration issuing warnings that it may retaliate. But the researchers also note that APT33 has links to data-destroying malware, and warn that the intrusion attempts could be the first step in that sort of more aggressive cyberwar operation.

FireEye has previously warned that while APT33 has in prior operations largely focused on traditional spying, it has also at times appeared to have destructive tools in its arsenal. In 2017, FireEye reported that APT33 infected some victims with "dropper" malware that had in other attacks been used to plant a piece of data-destroying code known as ShapeShift. Crowdstrike, too, says it has seen APT33's fingerprints appear in some intrusions where another piece of destructive malware known as Shamoon had been used, a wiper tool tied to a collection of sometimes-devastating Iranian sabotage campaigns across the Middle East.

In at least some of last week's intrusion attempts, the hackers sent potential victims an email lure posing as a job opening from the Council of Economic Advisors, an organization within the White House's Executive Office of the President. The email contained a link that, if clicked, opened a so-called HTML application or HTA. That in turn launched a Visual Basic script on the victim's machine that installed a malware payload known as Powerton, a kind of all-purpose remote access trojan. That Powerton malware, the HTA trick, and the job lure all fit the modus operandi of APT33, which in previous operations has used those techniques against oil and gas targets around the Persian Gulf region. Dragos also notes that the naming conventions for domains used in the phishing attacks' infrastructure match those earlier attacks.

CrowdStrike's vice president of intelligence Adam Meyers points out that the economic focus of the job lure suggests that the Iranian hackers may be trying to learn more about the Trump administration's intentions around its trade sanctions against Iran, rather than any more aggressive cyberattack preparation. But he doesn't discount that, given the right target of opportunity, it might later pivot to more destructive sabotage. "I think this is probably intelligence collection. But any time they’re going to engage in that collection there’s the possibility it could be preparation for other operations," Meyers says. "Depending on what you get back you make an assessment. You say 'this is a good target, we could do something with this.'"

Dragos analyst Joe Slowik notes that even if APT33 is planting mines for a data-destroying operation, it may not actually detonate them unless the conflict between Iran and the deteriorates further. "When the shit hits the fan, you can't turn on a dime and say 'I need cyber now,'" Slowik says. "So it may be related to having that strategic flexibility in the future with no immediate intention to be disruptive or destructive," Slowik says. "When you see tensions start to rise, the need to flesh out that access is going to increase in tandem."

"The gloves may already be off."

John Hultquist, FireEye

Whatever its current intentions, Iran has a long history of disruptive and destructive cyberattacks on American targets and US allies. After the Stuxnet malware was revealed in the summer of 2012 to be a joint US-Israeli operation aimed at sabotaging an Iranian nuclear enrichment facility, Iranian hackers launched an unprecedented attack on Saudi Aramco, using the Shamoon wiper malware to destroy 30,000 computers, leaving an image on their screens of a burning American flag. The next month it launched a series of sustained distributed denial of service attacks hitting the websites of almost every major US bank, and in 2014 launched another data-destroying attack on the Las Vegas Sands Casino, after the casino's owner Sheldon Adelson publicly suggested the US launch a nuclear weapon against Iran.

But after the Obama Administration signed an agreement with Iran that lifted many of the sanctions against the country in exchange for Iran's promise to halt its nuclear development, those attacks against the West largely ceased, though they continued against some Middle Eastern targets. When Trump scrapped that agreement last year, however, cybersecurity experts warned that Iran would likely restart its destructive hacking operations against the West. In December of 2018, another Shamoon attack hit the network of Italian oil firm Saipem, whose largest customer is Saudi Aramco, though that attack wasn't clearly attributed to Iran.

The latest phishing campaign, in the context of the heated military rhetoric from both Iran and the US, raises fears again that the lull in Iran's cyberattacks on the West may be over. "The gloves may already be off," says FireEye's John Hultquist. "We’re probably headed for a place very, very soon, where the days of aggressive Iranian activity are likely to return. If we’re trading blows with them in the Gulf, i don’t see them holding back."