broadbandit: 改自单词broadband(宽带) bandit(强盗;土匪)

The new age of cyber-attacks could have huge economic costs.


Twenty years ago, it might have been the plot of a trashy airport thriller. These days, it is routine. On May 7th cybercriminals shut down the pipeline supplying almost half the oil to America’s east coast for five days. To get it flowing again, they demanded a $4.3m ransom from Colonial Pipeline Company, the owner. Days later, a similar “ransomware” assault crippled most hospitals in Ireland.


trashy: 质量极其粗劣的;毫无价值的

thriller: (尤指关于罪案或间谍的)惊险小说(或戏剧、电影)

cyber-criminal: 网络罪犯

ransom: 赎金

ransomware: 勒索软件;敲诈软件(封锁用户的计算机系统,付钱后方解封)

cripple: 破坏; 削弱;使……残废

5月7日,美国大型成品油管道系统运营商科洛尼尔管道运输公司(Colonial Pipeline Company)因黑客通过非法软件控制其电脑系统或数据,不得不临时关闭设备。对输油管道实施袭击的是名为“黑暗面”(Dark Side)的网络犯罪团伙,他们对目标系统植入恶意软件,以索要赎金,劫持了科洛尼尔管道运输公司将近100GB的数据。“黑暗面”要求科洛尼尔公司交出赎金,否则相关数据将在网络上公布。

5 月 14 日凌晨,爱尔兰的公共服务医疗保健系统Health Service Executive(HSE)遭 Conti 勒索软件攻击,全国医疗保健系统受到广泛破坏,多家医院电子系统和存储信息无法进入。

Such attacks are evidence of an epoch of intensifying cyberinsecurity that will impinge on everyone, from tech firms to schools and armies . One threat is catastrophe: think of an air-traffic-control system or a nuclear-power plant failing. But another is harder to spot, as cybercrime impedes the digitisation of many industries, hampering a revolution that promises to raise living standards around the world.


epoch: 时代;纪元;时期

impinge on: 打击;冲击;对…不利;妨碍

catastrophe: 灾难;灾祸;横祸

air-traffic-control: 空中交通管制

nuclear-power plant: 核电站

impede: 阻碍;阻止

digitisation: 数字化

hamper: 阻碍,妨碍;牵制

The first attempt at ransomware was made in 1989, with a virus spread via floppy disks. Cybercrime is getting worse as more devices are connected to networks and as geopolitics becomes less stable. The West is at odds with Russia and several autocracies give sanctuary to cyber-bandits.


floppy disk: 软(磁)盘

be at odds (with sb) (over/on sth): (就某事)(与某人)有分歧;有争执

autocracy: 专制国家

sanctuary: 庇护所;避难所

Trillions of dollars are at stake. Most people have a vague sense of narrowly avoided fiascos: from the Sony Pictures attack that roiled Hollywood in 2014, to Equifax in 2017, when the details of 147m people were stolen. The big hacks are a familiar but confusing blur: remember SoBig, or SolarWinds, or WannaCry?


at stake: 有风险;处于危急关头

Vague 模糊的

narrowly avoided: 勉强避免的

fiasco: 惨败;可耻的失败;尴尬的结局

the Sony Pictures attack: 索尼影业遭黑客攻击事件。2014年11月,黑客组织“和平卫士”(Guardians of Peace)公布索尼影业员工电邮,涉及公司高管薪酬和索尼非发行电影拷贝等内容。


Equifax: 2017 年 9 月,美国征信巨头艾贵发公司承认 1.45 亿美国居民个人隐私信息泄露,这是该国历史上最严重的数据安全事件,以美国人口 3.2 亿计算,受影响的超过 40%。

blur: 模糊的记忆;记不清的事情

SoBig: 大无极病毒,主要危害是乱发邮件,邮件内容的一部分来自被感染机器中的资料,因此有可能泄漏用户的机密文件,特别是对利用局域网办公的企事业单位,所以这个病毒极有可能大面积传播。

SolarWinds: SolarWinds是一款体系结构的分布式网络性能监控系统,它拥有超过300,000个客户,包括:超过425家美国《财富》500强、美国全部十大电信公司、美国军方的所有五个部门、美国前五名会计师事务所、以及美国五角大楼、国务院、国家安全局、司法部、白宫。SolarWinds的系统被攻击之后,导致全球许多组织的网络遭到破坏,涉及的供应链范围极为广泛,被称为2020年美国最大网络安全事件。

WannaCry: 2017年,勒索病毒”WannaCry”感染事件爆发,全球范围近百个国家遭到大规模网络攻击,攻击者利用MS17-010漏洞,向用户机器的445端口发送精心设计的网络数据包,实现远程代码执行。被攻击者电脑中大量文件被加密,被要求支付比特币以解密文件。

A forthcoming study from London Business School (lbs) captures the trends by examining comments made to investors by 12,000 listed firms in 85 countries over two decades. Cyberrisk has more than quadrupled since 2002 and tripled since 2013. The pattern of activity has become more global and has affected a broader range of industries. Workers logging in from home during the pandemic have almost certainly added to the risks. The number of affected firms is at a record high.


listed firms: 上市公司

Log in 登录(系统)

quadruple: (使)变成四倍;增加三倍

triple: (使)变成三倍;增加两倍

Faced with this picture, it is natural to worry most about spectacular crises caused by cyber-attacks. All countries have vulnerable physical nodes such as oil pipelines, power plants and ports whose failure could bring much economic activity to a standstill. The financial industry is a growing focus of cybercrime: these days bank robbers prefer laptops to balaclavas. Regulators have begun to worry about the possibility of an attack causing a bank to collapse.


picture: 情况;局面

spectacular: 惊人的;突如其来的

node: 连接到网络的设备(如计算机)

failure 故障;失败;衰退

bring sth to a standstill: 使....停滞

balaclava: 巴拉克拉瓦盔式帽/羊毛头罩(裹住头、颈和脸的大部分),指抢劫银行者的装扮。这起源于1854年的克里米亚战争中的巴拉克拉瓦战役。发明这种头套的最初目的并不是怕别人认出你,而是为了抵御从黑海刮来的刺骨寒风。



But Just as costly is the threat to new tech as confidence in it ebbs. Computers are being built into cars, houses and factories, creating an industrial “internet of things” (IOT). Insights gleaned from oceans of data promise to revolutionise health care. In theory, all that will boost productivity and save lives for years to come. But the more the digital world is plagued by insecurity, the more people will shy away from it and the more potential gains will be lost. Imagine hearing about ransomware in someone’s connected car: “pay us $5,000, or the doors stay locked.”


Just as 正如;正在……的时候

ebb (away): 衰退;逐渐减少

“internet of things” (IOT): 物联网。指通过各种信息传感器、射频识别技术、全球定位系统、红外感应器、激光扫描器等各种装置与技术,实时采集任何需要监控、 连接、互动的物体或过程,采集其声、光、热、电、力学、化 学、生物、位置等各种需要的信息,通过各类可能的网络接入,实现物与物、物与人的泛在连接,实现对物品和过程的智能化感知、识别和管理。

glean sth from sb/sth: 费力地搜集(信息)

oceans of: 大量


shy away from: (因害怕或信心不足而)回避;躲避;避免做

Dealing with cyber-insecurity is hard because it blurs the boundaries between state and private actors and between geopolitics and crime. The victims of cyber-attacks include firms and public bodies. The perpetrators include states conducting espionage and testing their ability to inflict damage in war, but also criminal gangs in Russia and Iran whose presence is tolerated because they are an irritant to the West.


blur the boundaries 模糊……的界限

actor: 演员,参与者

body: 团体;机构;群体

perpetrator: 作恶者;犯罪者

espionage: 谍报活动;间谍行为

inflict: 使遭受(不好的事情);施加(打击、痛苦等)

irritant: 刺激性的;使人烦躁的事物

Be an irritant to sb 令某人烦恼

A cloud of secrecy and shame surrounding cyber-attacks amplifies the difficulties. Firms cover them up. The normal incentives for them and their counterparties to mitigate risks do not work well. Many firms neglect the basics, such as two-step authentication. Colonial had not taken even simple precautions. The cyber-security industry has plenty of sharks who bamboozle clients. Much of what is sold is little better than “medieval magic amulets”, in the words of one cyber-official.

网络攻击笼罩在秘密和羞耻的阴影中,这增加了应对难度。公司掩盖了这些问题。他们和交易对手减轻风险的正常激励并不奏效。许多公司忽略了一些基本的东西,如两步验证。科洛尼尔管道运输公司(Colonial Pipeline Company)甚至没有采取简单的预防措施。网络安全行业有大量欺骗客户的骗子。用一位网络官员的话来说,大部分出售的东西比“中世纪魔法护身符”好不了多少。

a cloud of: 阴影;焦虑

Secrecy 秘密

amplify: 增强

cover sth up: 掩饰/隐瞒某事

mitigate: 减轻;缓解;缓和

two-step authentication:(电脑的)两步/双重验证。和短信验证码一样道理,两步验证也是相当于给帐号多加一把“锁”,在输入正确的账号密码之后,用户同样还需要额外输入一个每 30 秒自动变化一次的 6 位数字验证码才能完成登录。

shark: 坑蒙拐骗的人;诈骗者

bamboozle: 欺骗;愚弄;蒙蔽

amulet: 护身符;驱邪物(为祛邪防病等佩戴的珠宝)

All this means that financial markets struggle to price cyberrisk and the penalty paid by badly protected firms is too small. The lbs study, for example, concludes that cyber-risk is contagious and is starting to be factored into share prices. But the data are so opaque that the effect is unlikely to reflect the real risk.


penalty: 罚金

contagious: 会蔓延的;传染性的

opaque: 难懂的;隐晦的;晦涩的

Fixing the private sector’s incentives is the first step. Officials in America, Britain and France want to ban insurance coverage of ransom payments, on the ground that it encourages further attacks. Better to require companies to publicly disclose attacks and their potential cost. In America, for example, the requirements are vague and involve large time lags.


insurance coverage: 保险范围

on the ground(s) that: 理由是

time lag:(两件相关事件的)时间间隔;时滞

With sharper and more uniform disclosure, investors, insurers and suppliers could better identify firms that are underinvesting in security. Faced with higher insurance premiums, a flagging stock price and the risk of litigation, managers might raise their game. Manufacturers would have more reason to set and abide by product standards for connected gizmos that help stem the tide of insecure iot devices.


uniform: 一致的;相同的

disclosure: 透露的信息;公开;披露

insurance premiums: 保险费

flagging: 疲倦的;逐渐衰弱的,萎靡的

litigation: 诉讼

raise one's game: 改进,提高竞争力

abide by: 遵守(主语是人)

gizmo: 小玩意儿;小装置

Governments should police the boundary between the orthodox financial system and the shadowy world of digital finance. Ransoms are often paid in cryptocurrencies. It must be made harder to recycle money from these into ordinary bank accounts without proof that the money has a legitimate source. Likewise with cryptocurrency exchanges, which should face the same obligations as established financial institutions.


police: 控制;监督

orthodox: 普遍接受的;正统的;规范的

shadowy: 神秘的;难以捉摸的

likewise 同样地

cryptocurrency: 加密电子货币

Obligation 义务

Cyber-insecurity is a matter of geopolitics, too. In conventional warfare and cross-border crime, norms of behaviour exist that help contain risks. In the cyber-domain novelty and confusion reign. Does a cyber-attack from criminals tolerated by a foreign adversary warrant retaliation? When does a virtual intrusion require a real-world response?


reign: 支配;盛行

adversary: 对手

warrant: 需要;值得

retaliation: 报复;反击

intrusion: 闯入;侵扰

In conventional warfare and cross-border crime, norms of behaviour exist that help contain risks. 此为倒装句,正常语序为:In conventional warfare and cross-border crime, norms of behaviour that help contain risks exist .

A starting-point is for liberal societies to work together to contain attacks. At the recent summits of the G7 and NATO, Western countries promised to do so. But confronting states such as Russia is crucial, too. Obviously, they will not stop spying on the Western countries that do their own snooping. But a third summit, between Presidents Joe Biden and Vladimir Putin, began a difficult dialogue on cybercrime. Ideally the world would work on an accord that makes it harder for the broadbandits to threaten the health of an increasingly digital global economy.


spy on: 从事间谍活动;秘密收集情报

snoop: 探听;调查;窥探

accord: 正式协议



