The October 17 Congressional hearings generated a great deal of interest and also consternation, particularly by NERC, EEI, and the utilities. There is ample evidence that many utilities have not been making much progress in actually securing their control systems or responding to the recent ES ISAC Advisory on the Aurora vulnerability. The NERC CIPs are not technically adequate to secure any computer system, much less critical infrastructure. The NIST Framework has been vetted internationally ...