The Times Australia
The Times World News

.
Times Media

.

Why it's unlikely there will be another #Censusfail tonight

  • Written by David Tuffley, Senior Lecturer in Applied Ethics & CyberSecurity, Griffith University

As the appointed hour for tonight’s census approaches, the question on many lips is: will it go smoothly, or will it be a repeat of the infamous 2016 #Censusfail?

Australians may remember the chaotic 40-hour shutdown suffered by the census website from 7:30pm on census night back in 2016. Fingers of blame were pointed in all directions, and the Australian Bureau of Statistics (ABS) suffered a heavy blow to its reputation.

A forensic audit[1] later revealed multiple causal factors, not least of which was a series of malicious “denial of service” (DDoS) attacks[2]. This type of attack aims to paralyse a website by bombarding it with too many requests at once.

What happened in 2016?

In essence, the online platform used in 2016 had insufficient built-in safeguards against DDoS attacks. This led to a hardware failure and the ultimate collapse of the system.

It is also possible the large number of legitimate access requests from people simply trying to complete their census contributed to the failure. The ABS later claimed the technology infrastructure was inadequate[3] for the job at hand, despite assurances from its provider, IBM.

After the DDoS attacks, system monitors reported what appeared to be an unusually large amount of outbound traffic, which suggested confidential data were being exfiltrated. The ABS shut everything down to prevent further data loss.

It was later found that the unusual outbound traffic reading had been false. There was no loss of confidential data.

Read more: Drowning by averages: did the ABS miscalculate the Census load?[4]

How will 2021 be different?

The 2021 census is being coordinated by PricewaterhouseCoopers[5], one of the largest professional services networks in the world.

Moreover, the online platform will run on Amazon Web Services[6], by far the largest cloud computing services provider in the world. It has certified capability at handling “protected workloads”, which means the Australian Signals Directorate has signed off on its trustworthiness to host citizens’ data.

With these choices, the ABS has minimised the risk of a 2016 repeat.

Hands using a laptop and smart phone at a desk Protecting citizens’ data is paramount. Christina/Wocintechchat/Unsplash, CC BY-SA[7]

Also providing advice on creating an all-round secure digital census platform is the Australian Cyber Security Centre[8] and the Digital Transformation Agency[9].

To pay for all of this, the ABS was allocated A$38.3 million over three years in the 2019-20 federal budget.

Census website opened early

By opening the census website on July 28, there will be less of a traffic spike on census night itself.

From July 28, Australians began receiving letters with their login ID and password. They could log in immediately to complete their censuses.

Read more: Census 2021 is almost here — what's changed since #censusfail? What's at stake in this pandemic survey?[10]

There have been informal reports that people have had difficulty logging on because it appeared from the letter that there were spaces in the sequence of nine characters that make up the password. The password was grouped into three lots of three characters on the letter.

But if the spaces are entered, the login fails. There should be no spaces in the password entered into the census website.

What makes a website resilient?

Resilient websites are those that are better able to withstand attacks in the first place, and — if a failure caused by excessive load or a cyber attack does happen — can recover with a minimum of downtime.

It is no great mystery how to do this. It is a matter of good engineering and ample resources. Around the world, there is a growing number of businesses whose livelihood depends on having a resilient website. Providers of web services like Amazon’s AWS and Microsoft’s Azure must guarantee these high levels of service, to win and keep these clients’ business.

This is the level of resilience the census platform is using.

How will we know if 2021 is a success?

2016 was Australia’s first digital census. It seems likely the lessons[11] from that bumpy first outing have been learned.

Moreover, top-shelf service providers have been engaged, and sufficient funding secured. With the arrangements currently in place, we can expect tonight’s census to be a success[12].

But there can be no absolute guarantees. We live in a world in which cyber-attacks from unfriendly nation states[13], organised criminals, hackivists[14] and garden-variety cyber-crooks are a daily occurrence.

The good news is that Australia’s ability to fend off this malicious disruption is improving every day.

References

  1. ^ forensic audit (www.abs.gov.au)
  2. ^ “denial of service” (DDoS) attacks (www.csoonline.com)
  3. ^ inadequate (www.smh.com.au)
  4. ^ Drowning by averages: did the ABS miscalculate the Census load? (theconversation.com)
  5. ^ PricewaterhouseCoopers (www.pwc.com.au)
  6. ^ Amazon Web Services (www.zdnet.com)
  7. ^ CC BY-SA (creativecommons.org)
  8. ^ Australian Cyber Security Centre (www.cyber.gov.au)
  9. ^ Digital Transformation Agency (www.dta.gov.au)
  10. ^ Census 2021 is almost here — what's changed since #censusfail? What's at stake in this pandemic survey? (theconversation.com)
  11. ^ lessons (www.smh.com.au)
  12. ^ success (www.zdnet.com)
  13. ^ nation states (www.abc.net.au)
  14. ^ hackivists (en.wikipedia.org)

Read more https://theconversation.com/why-its-unlikely-there-will-be-another-censusfail-tonight-165806

The Times Features

HOYTS Gift Cards are coming in hot this festive season

With a hot selection of blockbuster movies coming to the big screen this summer, avoid the crowds and enjoy some movie magic at HOYTS with discounted gift cards—perfect for stuff...

Top 10 holiday houses across Brisbane

As Brisbane gears up to become an Olympic city, the Sunshine State capital is seeing a surge in new residents, luxury hotels, and major developments including The Star Brisbane...

Australian small businesses set to win big as many brace for a bumper holiday season

With the holiday sales season in full swing, new data from the Commonwealth Bank reveals small businesses could be set to receive a much-needed end-of-year financial reward...

BeerFest Sydney at Darling Harbour Tumbalong Park

Sydneysiders’ ultimate summer party is here! BeerFest Sydney is making its triumphant debut at Darling Harbour’s Tumbalong Park on 6–7 December, bringing together NSW’s best bo...

The Importance of Regular Roof and Gutter Maintenance for Adelaide Home

The Importance of Regular Roof and Gutter Maintenance for Adelaide Homes Your roof and gutters can be integral to maintaining the structural integrity and aesthetic appeal of yo...

Designer Wardrobe reports surge in pre-loved wedding gowns

As Australia’s wedding season approaches, and amidst a challenging cost of living backdrop, new insights from Designer Wardrobe reveal that Australia and New Zealand (ANZ) brid...

Times Magazine

Protected Trees in NSW: What You Need to Know

If you live in New South Wales, you might already have heard that some trees are protected by law. Maybe you discovered this when you contacted someone for a quote to remove them, or maybe you learned the hard way by getting a fine for removing a...

Breaking the Stigma: Fostering Mental Health Awareness in the Workplace

In the evolving landscape of modern workplaces, the conversation around mental health is no longer relegated to the sidelines. As awareness grows, organizations are recognizing the profound impact that mental health has on their employees and, cons...

6 Life-Improving Apps Available Right Now

Smartphone applications have become an integral part of our lives. In the beginning, their use was not very wide, they were mainly used for messaging and communication. But in the last couple of years, advancements in technology have allowed de...

Spotlight On Devices This Cyber Security Awareness Month: Businesses Need Complete Attack Surface Visibility To Protect Assets

The Australian Signals Directorate (ASD) is encouraging every individual and organisation this Cyber Security Awareness Month to take action to secure their accounts and devices from cyber threats.They have outlined four simple steps for all Aust...

"From Concrete to Carpets: Surfaces that Ride-On Sweepers Can Clean"

In the drive towards clean and hygienic environments, ride-on sweepers form part of the critical roles. From solid concrete floors to sophisticated carpets, these versatile machines navigate a variety of surfaces with precision. This article delves...

Take the Fear Out of Vaccinating Your Pet at Home

Definition of Pet Vaccination Pet vaccination at home is becoming an increasingly popular option for pet owners who are looking for convenient and affordable ways to ensure their pets receive the vaccinations they need. Vaccinating your pet at h...