Sep23

Written by:David Aldridge
9/23/2010 12:24 PM 

Take a little time to read the following news article:

http://news.yahoo.com/s/csm/327178

Read it and let it sink in.

This is no script kiddie botnet DDOS attack.  This is a program that reaches out from the virtual to have a very definate effect in the real...

I think that the CSM article got most of it right - except that is for the target.  If the target was Bushehr, then why are the Iranians not raising all holy heck of a stink about it ?

The following are my musings based on that logical inconsistency...

The target was not Bushehr, because whoever wrote Stuxnet knows that Bushehr is a paper tiger.  Bushehr is simply a decoy, to draw the worlds attention elsewhere.  Whoever wrote Stuxnet knows that there is another, real facility.  They either know that they can't physically hit it or they simply do not know where it is.

You know what controllers are used the run the centrifuges in the location.  You know you have to shut it down.  So you write a piece of code that will do just that, and you plant it on those you suspect have access to that facility.  In many ways its a perfect attack - no risky incursions into another country, and no way the other country can say crap about a facility they can't admit exists...

However there is a downside here - a line has been crossed, and we had best be watching out should a reengineered version of stuxnet come back to bite us in the ass...

Tags:

Your name:
Your email:
(Optional) Email used only to show Gravatar.
Your website:
Title:
Comment:
Security Code
Enter the code shown above in the box below
Add Comment  Cancel 
You must be logged in and have permission to create or edit a blog.