https://www.theregister.com/2023/07/19/google_cuts_internet/ # # Sign in / up The Register(r) -- Biting the hand that feeds IT # # # Topics Security Security All SecurityCyber-crimePatchesResearchCSO (X) Off-Prem Off-Prem All Off-PremEdge + IoTChannelPaaS + IaaSSaaS (X) On-Prem On-Prem All On-PremSystemsStorageNetworksHPCPersonal Tech (X) Software Software All SoftwareAI + MLApplicationsDatabasesDevOpsOSesVirtualization (X) Offbeat Offbeat All OffbeatDebatesColumnistsScienceGeek's GuideBOFHLegalBootnotesSite NewsAbout Us (X) Special Features Special Features All Special Features Sysadmin Month The Reg in Space Emerging Clean Energy Tech Week Spotlight on RSA Energy Efficient Datacenters Vendor Voice Vendor Voice Vendor Voice All Vendor VoiceAmazon Web Services (AWS) Business Transformation DataikuDDNGoogle Cloud for StartupsHewlett Packard Enterprise: AI & ML solutionsIntel vProVMware (X) Resources Resources Whitepapers Webinars & Events Newsletters [sysadminmo] Sysadmin Month 64 comment bubble on white Google toys with internet air-gap for some staff PCs 64 comment bubble on white Fewer than 2% of workstations will be cut off in 'experiment' icon Brandon Vigliarolo Wed 19 Jul 2023 // 22:58 UTC # In a bid to shrink the attack surface of its army of employees, and thus boost security, Google is taking an experimental approach: cutting some of their workstations off from the internet. The Chocolate Factory has seen fit to sever staffers' links to the outside electronic world, admittedly on a small scale, according to internal documents viewed by CNBC. Roughly 2,500 Googlers were selected for the internet air-gap trial, and then following some feedback the search giant adjusted it so that people can opt out and others can volunteer. The Register was able to confirm the pilot program with Google, which told us it was being limited to fewer than two percent of workstations. Those who choose to participate will have their general internet access removed along with root privileges on their individual boxes if they had that. We experiment continuously to raise the cost of attacks "Ensuring the safety of our products and users is one of our top priorities," a Google spokesperson told us, adding the corporation "routinely explore[s] ways to strengthen our internal systems against malicious attacks." Google's tools and office software accessed via the web will still be accessible to those cut off from the internet generally. Workers in the program who require internet access for their jobs will be able to get exceptions. Whether that's a precursor to a wider workstation lockdown, Google VP of Security Engineering Heather Adkins took to Twitter to answer with an emphatic no. [sysadminmo] "We aren't turning the internet off at Google," Adkins tweeted. "We experiment continuously to raise the cost of attacks for bad guys and are running a short test." [sysadminmo] [sysadminmo] Regardless, cutting user workstations off from the internet is an obvious way for Google to decrease its cybersecurity footprint, and it couldn't come at a better time what with, say, supply chain attacks in vogue. * IT security teams, business execs still not on same page * Mind the airgap: Why nothing focuses the mind like a bit of tech antiquing * Israeli researcher fans fears: here's another way to cross the airgap * Google uses India to test 'deliver to the house near the post office' feature And also attacks on centralized cloud-based systems. For instance, Microsoft recently confirmed it was caught up in a serious security breach in which alleged Chinese snoops Storm-0588 breached Outlook Web Access accounts belonging to 25 organizations, including a US government agency. The financial cost of data theft is rising as well; we trust Google with so much of our information and IT infrastructure that efforts to shore up its internal security will be welcome. That said, the effectiveness of Google's small-scale test may be hard to ascertain. While we didn't get much in the way of direct answers to our questions from Google, a spokesperson did tell us that neither laptops nor smartphones are included in the pilot - just desktop workstations. Adkins' tweet backed that up. Googlers are free to get online from their portable or handheld devices, which speaks to the nature of the tech goliath's internal network structure. (r) Get our Tech Resources # Share More about * Google * Internet * Network More like these x More about * Google * Internet * Network * Security Narrower topics * 2FA * Advanced persistent threat * AFRINIC * Android * APNIC * Application Delivery Controller * App stores * Authentication * BEC * Black Hat * Black Hole * Botnet * Broadband * Broadcom * Bug Bounty * Cellular network * Chrome * Chromium * Common Vulnerability Scoring System * Cybercrime * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Data Breach * Data Protection * Data Theft * DDoS * Digital certificate * DNS * Domain Name * Email * Encryption * Ericsson * Ethernet * Exploit * Firewall * Google AI * Google Cloud Platform * Google I/O * Google Nest * G Suite * Hacker * Hacking * ICANN * Identity Theft * IETF * Incident response * Infosec * IPv4 * IPv6 * Kenna Security * Kubernetes * NCSAM * NCSC * Network interface card * Network switch * Palo Alto Networks * Password * Phishing * Pixel * Privacy Sandbox * Quantum key distribution * Radio Access Network * Ransomware * Remote Access Trojan * REvil * Router * RSA Conference * SmartNIC * Software-defined network * Spamming * Spyware * Streaming video * Submarine cable * Surveillance * Systems Approach * Tavis Ormandy * TLS * Trojan * Trusted Platform Module * Voice over IP * VPN * Vulnerability * Wannacry * World Wide Web * Zero trust Broader topics * Alphabet * Search Engine * Tim Berners-Lee More about # Share 64 comment bubble on white COMMENTS More about * Google * Internet * Network More like these x More about * Google * Internet * Network * Security Narrower topics * 2FA * Advanced persistent threat * AFRINIC * Android * APNIC * Application Delivery Controller * App stores * Authentication * BEC * Black Hat * Black Hole * Botnet * Broadband * Broadcom * Bug Bounty * Cellular network * Chrome * Chromium * Common Vulnerability Scoring System * Cybercrime * Cybersecurity * Cybersecurity and Infrastructure Security Agency * Cybersecurity Information Sharing Act * Data Breach * Data Protection * Data Theft * DDoS * Digital certificate * DNS * Domain Name * Email * Encryption * Ericsson * Ethernet * Exploit * Firewall * Google AI * Google Cloud Platform * Google I/O * Google Nest * G Suite * Hacker * Hacking * ICANN * Identity Theft * IETF * Incident response * Infosec * IPv4 * IPv6 * Kenna Security * Kubernetes * NCSAM * NCSC * Network interface card * Network switch * Palo Alto Networks * Password * Phishing * Pixel * Privacy Sandbox * Quantum key distribution * Radio Access Network * Ransomware * Remote Access Trojan * REvil * Router * RSA Conference * SmartNIC * Software-defined network * Spamming * Spyware * Streaming video * Submarine cable * Surveillance * Systems Approach * Tavis Ormandy * TLS * Trojan * Trusted Platform Module * Voice over IP * VPN * Vulnerability * Wannacry * World Wide Web * Zero trust Broader topics * Alphabet * Search Engine * Tim Berners-Lee TIP US OFF Send us news --------------------------------------------------------------------- Other stories you might like Tax prep firms 'recklessly shared' your data with Google and Meta - senators Lawmakers, yet to pass a national privacy law, demand action on money Personal Tech12 Jul 2023 | 20 Google tightens Play Store dev rules while becoming more blockchain tolerant Trust and safety push promises ability to delete app-associated accounts Devops17 Jul 2023 | 5 Let there be light ... based wireless networks: LiFi spec OK'd as Wi-Fi complement Talk about a bright idea Networks14 Jul 2023 | 41 Where performance matters for the digital worker Specifying PCs to meet the exact needs of individual workers is key to boosting productivity, explains Intel Sponsored Feature [sysadminmo] VirusTotal: We're sorry someone fat-fingered and exposed 5,600 users File under PEBCAK CSO21 Jul 2023 | 12 Clingy Virgin Media won't let us leave, customers complain Ofcom launches investigation into whether telco is making it difficult for people to cancel services Networks13 Jul 2023 | 68 Beijing wants to make the Great Firewall of China even greater Also more fiery, with vague but firm orders to create a 'security barrier' Security17 Jul 2023 | 7 Microsoft's security roadmap: Protect secrets in Azure DevOps You can't steal what you can't access ... we hope Sysadmin Month16 Jul 2023 | 2 US adds Euro spyware makers to export naughty list Predator dev joins Pegasus slinger Security18 Jul 2023 | 27 Stolen Microsoft key may have opened up a lot more than US govt email inboxes How does the Azure giant come back from this? CSO21 Jul 2023 | 29 Funnily enough, AI models must follow privacy law - including right to be forgotten Updated We'll just take a look at the training data, oh... wait AI + ML13 Jul 2023 | 64 Ultra Ethernet Consortium wants to optimize networking for AI and HPC Not changing the standard, but tweaking how applications work over top Networks20 Jul 2023 | 2 The Register icon Biting the hand that feeds IT About Us* * Contact us * Advertise with us * Who we are Our Websites* * The Next Platform * DevClass * Blocks and Files Your Privacy* * Cookies Policy * Privacy Policy * T's & C's * Do not sell my personal information Situation Publishing Copyright. All rights reserved (c) 1998-2023 no-js