This page has been archived and commenting is disabled.

America and Israel Created a Monster Computer Virus Which Now Threatens Nuclear Reactors Worldwide

George Washington's picture




 

In their obsession to stop Iran from developing nuclear weapons, the U.S. and Israel created a computer virus (called “Stuxnet”) to take out Iran’s nuclear enrichment machinery.

The virus appears to have spread to other countries.

One of the world’s top computer security experts – Eugene Kaspersky – said this week that the virus has attacked a Russian nuclear reactor.   As The Register notes:

The infamous Stuxnet malware thought to have been developed by the US and Israel to disrupt Iran’s nuclear facilities, also managed to cause chaos at a Russian nuclear plant, according to Eugene Kaspersky.

 

The revelation came during a Q&A session after a speech at Australia’s National Press Club last week, in which he argued that those spooks responsible for “offensive technologies” don’t realise the unintended consequences of releasing malware into the wild.

 

“Everything you do is a boomerang,” he added. “It will get back to you.”

 

***

 

“Unfortunately, it’s very possible that other nations which are not in a conflict will be victims of cyber attacks on critical infrastructure,” said Kaspersky.

 

“It’s cyber space. [There are] no borders, [and many facilities share the] same systems.”

 

Not finished there, Kaspersky also claimed to have heard from “Russian space guys” in the know that even machines on the International Space Station had been infected “from time to time” after scientists arrived aboard with infected USBs.

Watch for yourself:

Other security experts agree.

 

As British security website V3 – in an article entitled “Stuxnet: UK and US nuclear plants at risk as malware spreads outside Russia” – reports:

Experts from FireEye [background] and F-Secure [background] told V3 the nature of Stuxnet means it is likely many power plants have fallen victim to the malware ….

 

F-Secure security analyst Sean Sullivan told V3 Stuxnet’s unpredictable nature means it has likely spread to other facilities outside of the plant mentioned by Kaspersky.

 

“It didn’t spread via the internet. It spread outside of its target due to a bug and so it started traveling via USB. Given the community targeted, I would not be surprised if other countries had nuclear plants with infected PCs,” he said.

 

Director of security strategy at FireEye, Jason Steer, mirrored Sullivan’s sentiment, adding the insecure nature of most critical infrastructure systems would make them an ideal breeding ground for Stuxnet.

 

***

 

Steer added the atypical way Stuxnet spreads and behaves, means traditional defences are ill equipped to stop, or even accurately track the malware’s movements.

 

“It’s highly likely that other plants globally are infected and will continue to be infected as it’s in the wild and we will see on a weekly basis businesses trying to figure out how to secure the risk of infected USB flash drives,” he said.

 

***

 

The use of XP in power plants is set to become even more dangerous as Microsoft has confirmed it will officially cut support for the 12-year-old OS in less than a year. The lack of support means XP systems will no longer receive critical security updates from Microsoft.

That’s almost as brilliant as waging a global war on terror in such an idiotic way that it is increasing terrorism

Bonus:

 

- advertisements -

Comment viewing options

Select your preferred way to display the comments and click "Save settings" to activate your changes.
Tue, 11/12/2013 - 23:44 | 4148706 Sockeye
Sockeye's picture

Interesting windoze connection:
http://en.wikipedia.org/wiki/TerraPower

Tue, 11/12/2013 - 23:29 | 4148659 proLiberty
proLiberty's picture

First and foremost, the #1 problem with Stuxnet is Windoze.

Tue, 11/12/2013 - 22:20 | 4148463 Captain Nukem
Captain Nukem's picture

Stuxnet was designed to take out Iran's uranium centrifuges, not nuclear reactors as GW claims.

http://www.wired.com/threatlevel/2010/11/stuxnet-sabotage-centrifuges/

Security firm Symantec recently determined that the malware specifically targets Siemens systems that are used with frequency-converter drives made by two firms, one based in Iran and one in Finland. Even more specifically, Stuxnet targets only frequency drives from these two companies that are also running at high speeds — between 807 Hz and 1210 Hz.

So are there any reactors actually using the Iranian or Finnish frequency converter drives at those specific frequencies? Offhand, I can't think of any reason why any reactor would need to use frequency converter drives at such high frequencies.

Uranium centrifuges spin at very high speeds and need equipment to carefully monitor and damp out small vibrations. Otherwise vibrations at certain frequencies can build up and cause the centrifuge to fly apart.

Of course, people worry that the Stuxnet virus could be reengineered to carry a different payload targeted at different type of equipment. But so could many other viruses.

Wed, 11/13/2013 - 09:40 | 4149419 Running On Bing...
Running On Bingo Fuel's picture

Just call a spade a spade. Siemens sold the hardware to Iran, in that hardware was embedded firmware that had an exploit specifically designed for Iran.

The Windows infection is benign if you lack the specific Iranian SCADA hardware.

This virus on the loose morphing into Godzilla shit sells newspapers and masks the fact that Siemens was solely culpable of attacking Iran. Another case of Corporate military aggression.

Over.

Wed, 11/13/2013 - 14:54 | 4150952 Manthong
Manthong's picture

cool.. so how micro can you get an infection.. at the lowest level in machine code?

Wed, 11/13/2013 - 17:31 | 4151663 Running On Bing...
Running On Bingo Fuel's picture

SCADA itself.

The Siemen's centrifuge is the hardware that depends on a controller system. That controller system is running windows or *nix, I'm sure it did not matter. The centrifuge had the virus in it's uC(microcontroller), delivered with the payload installed.

The controller system is clean until you plug the centrifuge into the local network. That centrifuge infects the local controller system and then that controller goes rouge infecting other 'targeted, engineered' centrifuge's inside the landscape to work in concert.

Simultaneously you release the controller(windows) virus into the wild to create noise and cover your tracks. It's benign so no worries to genpop.

Over.

http://en.wikipedia.org/wiki/File:SCADA_schematic_overview-s.svg

Tue, 11/12/2013 - 22:36 | 4148500 Freddie
Freddie's picture

Oh yeah it's only minor.  Certain people do not just take over banks and rig elections/voting machines.   It is all very innocent.  They also do not get a real time feed from the N*A on all data on all Americans either.

Tue, 11/12/2013 - 22:11 | 4148447 joego1
joego1's picture

What a bunch of fucking geniuses. No wonder Neopolitano warned that there would be a grid failure.

Tue, 11/12/2013 - 22:10 | 4148445 rationaldemocracy
rationaldemocracy's picture

 

This thing targets specific operating systems (Windows) and software installed on them (Sieman's), does it not? If nuclear power plant operators knew that this thing was out there why did they not switch to higher security operating systems and different software ?

I know that this blog is full of people with high testosterone and a lotta chips on their shoulders but please try and think rationally

 

Tue, 11/12/2013 - 22:51 | 4148535 BigJim
BigJim's picture

 If nuclear power plant operators knew that this thing was out there why did they not switch to higher security operating systems and different software ?

Lulz

Tue, 11/12/2013 - 22:36 | 4148476 Quisat_Sadarak
Quisat_Sadarak's picture

Security for most plant networks is PATHETIC best case!  And mostly non-existent.  There is a recent elevation of concern among higerups, but it's going to take years to beef up security measures.  It will probably take an incident to wake people up, but then it might be too late.

Most operators don't have a clue about security.

 

The new variations of the Stuxnet use the exploits to get in the system and infect the host, and then replicate, then from there you can change the virus to do anything you want.  You have to close the security holes in windows or this thing will keep replicating.

 

Wed, 11/13/2013 - 14:50 | 4150915 Ying-Yang
Ying-Yang's picture

Stuxnet was written to delay Iran's nuclear program by damaging plant equipment. Most plants are isolated from the Internet therefore the virus was introduce by Mossad agents via thumb drives. The effectiveness of Stuxnet is that when it runs it shows all system activities to be normal while the controls (SCADA) are actually doing damage.

Iran has recovered and been reinfected several times. They as well as others have the virus code. You can rewrite parts of the code to do other tasks and control other equipment. The code has been sold around the world.

Since most high risk plants are isolated and not conected to the Internet the virus would have to be introduced by a person.

Eugene Kapersky who owns the Russian anti-malware company called Kapersky has reverse engineered Stuxnet to learn how it works and how it can be adapted to other facilities. He states that Stuxnet is one of the most advanced viruses to date.

"President Obama has prudently focused on securing our nation's digital networks," said San Antonio Mayor Julián Castro. "Today's activation of the Cyber Command is vital to our national defense, and San Antonio is proud to play an important role. What Silicon Valley is to software and San Diego is to biotech, San Antonio is to cyber."

It is a whole new world... act accordingly

Tue, 11/12/2013 - 22:19 | 4148464 thisandthat
thisandthat's picture

Maybe because your homecinema doesn't run on nuclear fuel?

Tue, 11/12/2013 - 22:20 | 4148455 George Washington
George Washington's picture

Despite my testosterone level and shoulder-chip, I'm deferring to the security experts on this one ...They say it's a prob.

Wed, 11/13/2013 - 00:05 | 4148769 TheReplacement
TheReplacement's picture

They do and it is.

Here's the scary part.  You wanna close the holes, so to speak, so you upgrade.  What do you get when you do that?  You get W7 or W8 and new hardware.  Guess who has embedded their own secret recipe in both the code and the chipsets...  NSA mofos! 

If you are using computers, you literally cannot win at this game unless you make them yourself, from scratch.  Nobody can do that without a huge budget.  Big budgets bring big brother's attention.  The newer the computer the better chance the NSA has of getting access.

You want security, get a 386, install a 2.2 Linux variant, put all of your data on it, and burn it, smash it, and use an electromagnet on it.  Now the NSA will not get into it, maybe.

Well that's the NSA you say.  We're talking about the CIA.  We are dealing with a big brother government with the means and the will.  There is no difference between the agencies.  If one has your info they are free to share it with all.  Nobody will go to jail over it.  Just ask that sweet IRS lady.

Wed, 11/13/2013 - 09:45 | 4149279 Running On Bing...
Running On Bingo Fuel's picture

https://www.kernel.org/pub/linux/kernel/v3.x/linux-3.11.8.tar.xz

will work well. You will have to strip the kernel anyway, to the bare bones. Just remove the motherboard and burn the USB port off(heat the solder). Then just strip all drivers out of the kernel. Scrub /bin and make sure ls, netstat, etc are 'correct'.

Lots to do but most important is to never expose it to the wild, keep her quarantined and inside a perimeter fence that has redundant broadcast sentry's who are sniffing for abnormalities.

A team of 5 should be able to build it in 4 - 5 months, unless they are indians(dot not woo-woo) then expect a 3 year project while they learn OTJ, begging for help on linux forums. "Hello Gang, this is Raj Kumar from India. I need urgent help today, right now! How do you create pointer in Linux language?".

Over.

Wed, 11/13/2013 - 09:52 | 4149480 g speed
g speed's picture

or --rebuild your physical systems with limit switches and operate it manually----bullish for employment.

Tue, 11/12/2013 - 22:01 | 4148425 thisandthat
Wed, 11/13/2013 - 13:21 | 4150442 Herd Redirectio...
Herd Redirection Committee's picture

Its what I predicted would happen, 12 years ago.  That the 'war on terror' would actually end up incentivizing young Muslims to become violent extremists.  And thats what we have seen.

What would you do if your mother and sister were killed 'accidentally' by a drone attack?

Wed, 11/13/2013 - 16:44 | 4151482 thisandthat
thisandthat's picture

The point is that's not a war on terror, but a war of terror (by design).

Tue, 11/12/2013 - 21:49 | 4148393 blindman
blindman's picture

http://radiationnetwork.com/
.
Click here for Alerts

Welcome to RadiationNetwork.com, home of the National Radiation Map, depicting environmental radiation levels across the USA, updated in real time every minute. This is the first web site where the average citizen (or anyone in the world) can see what radiation levels are anywhere in the USA at any time.

Tue, 11/12/2013 - 21:26 | 4148338 TNTARG
TNTARG's picture

Don't you love these peacekeepers, democracy lovers?

And the "evil" should be Iran.

Well, they are used to nuke "evil", they've been doing it since 1945. Just didn't think about the extent of collateral damage. Which in this case happens to be life on Earth.

Or maybe they're the hand of God coming to free the Planet from living creatures so The Almighty can start a new project say, 200.000 years from now. Meanwhile he can take a break. Not easy dealing with Mankind.

/sarc, just in case.

 

 

Tue, 11/12/2013 - 21:18 | 4148326 magne13
magne13's picture

Is that why the mossad run nuclear facility security in the US?

Tue, 11/12/2013 - 21:09 | 4148303 jim249
jim249's picture

"the U.S. and Israel created a computer virus (called “Stuxnet”) to take out Iran’s nuclear reactors."

 

As I recall, it was created to sabatage the centrifuges. It caused them to spin at much higher speeds than designed for until they self destructed.

Tue, 11/12/2013 - 21:16 | 4148324 George Washington
George Washington's picture

It targets Siemens industrial control systems.  There are a LOT of Siemens industrial control systems in the world!

Tue, 11/12/2013 - 21:39 | 4148366 spinone
spinone's picture

So you're saying the semen is stux?  Oh no!

Wed, 11/13/2013 - 15:01 | 4150982 A Nanny Moose
A Nanny Moose's picture

Does not bode well for nuke subs.

Tue, 11/12/2013 - 21:52 | 4148390 George Washington
George Washington's picture

 

http://www.washingtonpost.com/blogs/worldviews/files/2013/06/148082981.jpg

 

https://static-secure.guim.co.uk/sys-images/Guardian/Pix/pictures/2012/7/28/1343490024379/General-Keith-Alexander-010.jpg

 

http://www.zerohedge.com/sites/default/files/images/user3303/imageroot/2013/08/Hayden.jpg

Wed, 11/13/2013 - 13:08 | 4150386 Serfs_Up
Serfs_Up's picture

Air quotes are for faggots. 

Wed, 11/13/2013 - 09:24 | 4149370 Running On Bing...
Running On Bingo Fuel's picture

What? No pink ribbon or other such lapel campaigns? Heartless cretin.

Over.

Tue, 11/12/2013 - 21:33 | 4148353 jim249
jim249's picture

That is true when you say it was designed to mess up Siemans control units. I really don't think that their intention was to take out nuclear reactors though. That is an after effect.

Tue, 11/12/2013 - 22:29 | 4148485 Freddie
Freddie's picture

These people are evil and malicious.  Your every communication and all your personal information is sent to them daily.  Thank Obama.

Tue, 11/12/2013 - 21:39 | 4148364 George Washington
George Washington's picture

I don't believe either the NSA or Mossad intended this to get "out into the wild".

But they sure as heck didn't think ahead ...

Tue, 11/12/2013 - 22:42 | 4148514 Freddie
Freddie's picture

Oh yes they did.  They used it on one country - why wouldn't they use it on other people.  They share data on every American in real time.

Tue, 11/12/2013 - 22:40 | 4148510 Quisat_Sadarak
Quisat_Sadarak's picture

The "stuxnet" virus showed people the idea of how to gain entrance to a machine, and how to infect a siemens control system...  now anyone with some technical ability can make it do anything they want!

These people could be anyone, not necessarily US or Mosaad, anyone.. take your pick.  The genie is out of the bottle, and anyone can make a wish.

Tue, 11/12/2013 - 22:56 | 4148549 DaveyJones
DaveyJones's picture

exactly

Tue, 11/12/2013 - 21:06 | 4148290 q99x2
q99x2's picture

Gog and Magog Dude.

Tue, 11/12/2013 - 20:59 | 4148271 KickIce
KickIce's picture

I'm a firm believer in the old adage what goes around, comes around.

Tue, 11/12/2013 - 21:43 | 4148373 mijev
mijev's picture

'I'm a firm believer in the old adage what goes around, comes around.,l

X 1000 when a centrifuge is involved.

Tue, 11/12/2013 - 21:52 | 4148407 shovelhead
shovelhead's picture

I saw that.

Tue, 11/12/2013 - 22:49 | 4148531 BigJim
BigJim's picture

You didn't see that - The Big O

Tue, 11/12/2013 - 21:00 | 4148270 Running On Bing...
Running On Bingo Fuel's picture

Thank goodness that we have to protect israel from those nasty towelheads.

How else are we going to right the good ship USSA.

Over.

Tue, 11/12/2013 - 21:45 | 4148380 mijev
mijev's picture

Israelis are the biggest towelheads of all.

Tue, 11/12/2013 - 23:59 | 4148747 Anusocracy
Anusocracy's picture

More like a hunter-gatherer tribe.

Tue, 11/12/2013 - 22:24 | 4148475 Freddie
Freddie's picture

The vile Saudis are their best friends.

Tue, 11/12/2013 - 22:21 | 4148468 thisandthat
thisandthat's picture

*coasterheads

Tue, 11/12/2013 - 20:52 | 4148245 johnQpublic
johnQpublic's picture

about the only law .gov doesnt enforce is the law of unintended consequences

which is self enforcing

Tue, 11/12/2013 - 20:42 | 4148210 ThisIsBob
ThisIsBob's picture

Whoever would have thought that boiling water would come to this?

Tue, 11/12/2013 - 20:29 | 4148169 Ocean22
Ocean22's picture

Wonderful news. Just add it the list of ways they are trying to kill us. Its becoming a very long list. Sooner or later one of these devious plots is going to work- and in a big way. (Oh wait, they all seem to be working.)

We are not waking up fast enough.

Tue, 11/12/2013 - 22:59 | 4148542 DaveyJones
DaveyJones's picture

yeah this news has been out for a while. Just more vital information about the real bad guys that no one does anything about

Do NOT follow this link or you will be banned from the site!